[LARTC] 26sec kame ipsec tunnel : packets leave unencrypted...

Sylvain BERTRAND sylvain at 2001-space-odyssey.net
Wed Apr 27 16:29:38 CEST 2005


Hi everyone,

First of all, this is my first post in this ML, so I'm not sure that this
is the right place for my question (please don't shoot me down ;)). For
the record, I've been reading and using LARTC for almost 3 years now, and
it's a great help for anyone who wants to learn linux networking.

My problem:

I want to setup a tunnel for the following networks (tunnel esp 3des):


192.168.1.0/24 -|A|- 62.212.109.16 <--- INTERNET ---> 82.234.240.117 -|B|-
192.168.0.0/24


On "B", setkey -DP gives the following:

192.168.0.0/24[any] 192.168.1.0/24[any] any
        out ipsec
        esp/tunnel/82.234.240.117-62.212.109.16/require
        created: Apr 27 12:18:35 2005  lastused:
        lifetime: 0(s) validtime: 0(s)
        spid=313 seq=5 pid=5812
        refcnt=1

When I try to ping the A router from the B router (using 192.168.
addresses of course), packets are sent unencrypted. And I can't figure out
why.

Does anyone have an idea?

I've already set up such tunnels in the past (successfully), but before
the 26sec was modified, and with ipsec-tools prior to 0.5.


Thanks for your help.


Sylvain



More information about the LARTC mailing list