[vpn-help] RW (shrew) -> swan (ipcop) - tunnel active - no packages back to RW

Stefan Bauer stefan.bauer at cubewerk.de
Fri Feb 25 05:23:23 CST 2011


Hi folks,

i associated a tunnel between shrew (winxp) and ipcop (swan).

according to the logs on both sides, tunnel is active but no
packages comes back to the RW.

here is a tcpdump on the server - my rw is 192.168.10.30
ipcop.localdomain is 172.20.0.1:

IP 192.168.10.30 > ipcop.localdomain: ICMP echo request, id 1536,
seq 1024, length 40
IP ipcop.localdomain > 192.168.10.30: ICMP echo reply, id 1536, seq
1024, length 40

I checked if the answers packages might get masqueraded, but i added
an exception for the RW-network:


Chain POSTROUTING (1 references)
 pkts bytes target     prot opt in     out     source
destination
   17  1316 MASQUERADE  all  --  *      ppp0    0.0.0.0/0
!192.168.10.0/24

Still, i see no answer traffic on my roadwarrior windows pc
(sniffing traffic with libpcap / windump).

Some debug/infos here:

http://www.plzk.de/ipsec.log

Ideas are greatly appreciated.

thanks

stefan
-- 
Stefan Bauer -----------------------------------------
PGP: 36D1 1570 DCAD B767 EABE F60D 6BCA 7AD4 79EB C4EC
-------- plzk.de - Linux - because it works ----------



More information about the vpn-help mailing list