My scenario is VMs behind the roadwarrior(carol) reaching gateway(moon)'s
subnets (alice).
1. carol to moon subnets - this works correctly as a point2site network.
2. carol - has a KVM libvirt 192.168.122.0/24 network totally unknown to
moon. I want these VMs to reach the subnets behind moon
Hi Richard,
the table 220 source IP routing rule applies to packets originating
from the VPN gateway itself, only . If you want roadwarriors from a
subnet behind the GW to assume this address then you have to NAT them
to the GW's address. Since the table 220 rule usually maps the GW's
source