William Brinkman wrote:
> 
> I have networked two DCD firewalls with IPSec using
> X.509 certificates.  I have added a "road warrior"
> M$98 machine using SSH Sentinel package.
> 
> The interesting part is that the KLIPS warning that
> usually shows up during boot now really matters!
> 
> WARNING: ipsec0 has route filtering turned on, KLIPS
> may not work ..... /proc/....rp_filter ='1' should be
> 0
> 
> The two DCD can seem to get around the rp_filter=1
> in /proc/sys/net/ipv4/ipsec0/rp_filter but not the
> Sentinel.
> 
> The eth0 error can be cleared by changing line 138 in
> network.conf eth0_IP_SPOOF=NO yet I cannot seem to
> figure out how to clear the ipsec0 error.
> 
> >From the shell the standard
> echo 0 > /proc/sys/net/ipv4/ipsec0/rp_filter will work
> but I am trying to get the setup to do this for me.
> 
> Inserting the above line in various places has proven
> futile.
> 
> Any suggestions on how to clear the ipsec0/rp_filter=
> '1' error?

Have you looked in /etc/init.d/network -- near line 116?

-- 

Best Regards,

mds
mds resource
888.250.3987

Dare to fix things before they break . . .

Our capacity for understanding is inversely proportional to how much we
think we know.  The more I know, the more I know I don't know . . .

_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to