-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Julie S. Lin wrote:
> Hi
> 
> interesting, so the KLIPS not working will break windows VPN but not VPN
> for linux boxen?  i have a remote user using linux VPN and he's fine. 
> curious.

The KLIPS warning, and the route filtering, is a problem with some types
of tunnels, and/or IPSec modes.

There are four types of "tunnels": host-host, subnet-subnet,
host-subnet, and subnet-host (the last two differ on which end is the
host and which end is the subnet).

There are also two basic types of IPSec operation, "tunnel" and "transport".

I pretty much only use subnet-subnet connections in transport mode,
which works fine with route filtering enabled (despite the KLIPS
warnings), but I believe some of the other combinations will actually
break if you leave route filtering on.  I think you can find more
details in the OpenS/WAN documentation.

- --
Charles Steinkuehler
[EMAIL PROTECTED]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFD9SXBLywbqEHdNFwRAtQnAKDeK8No7Xls/RYeO30VmdUVJEE3yACfc/d1
Kgjv9BpBtWuO3N32AneVGA0=
=bXPF
-----END PGP SIGNATURE-----


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
------------------------------------------------------------------------
leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/

Reply via email to