Re: IPSEC bringing down networking 1.1

2010-01-09 Thread Toni Mueller
Hi, On Tue, 05.01.2010 at 12:44:49 -0800, Jeff Simmons jsimm...@goblin.punk.net wrote: fw:$ netstat -nr tip: netstat -rnf encap results elided Encap: Source Port Destination Port Proto SA(Address/Proto/Type/Direction) expected ecap routes elided 0/00 0/0

Re: IPSEC bringing down networking 1.1

2010-01-09 Thread Jeff Simmons
On Saturday 09 January 2010 08:57, Toni Mueller wrote: Hi, On Tue, 05.01.2010 at 12:44:49 -0800, Jeff Simmons jsimm...@goblin.punk.net wrote: fw:$ netstat -nr tip: netstat -rnf encap results elided Encap: Source Port Destination Port Proto SA(Address/Proto/Type/Direction)

Re: IPSEC bringing down networking 1.1

2010-01-09 Thread Jeff Simmons
Apologies for the previous empty message. On Saturday 09 January 2010 08:57, Toni Mueller wrote: Hi, On Tue, 05.01.2010 at 12:44:49 -0800, Jeff Simmons jsimm...@goblin.punk.net wrote: results elided Encap: Source Port Destination Port Proto SA(Address/Proto/Type/Direction) expected

IPSEC bringing down networking 1.1

2010-01-05 Thread Jeff Simmons
I have a machine that I admin remotely running 4.6 with all the patches. It's a firewall only machine with 6 ethernet interfaces, 4 of which are active, and has been running fine since I upgraded it. It's got a fairly complex pf.conf. Last week I set up a VPN on it to a Sonic Wall appliance.

Re: IPSEC bringing down networking

2010-01-03 Thread Stuart Henderson
On 2010-01-03, Jeff Simmons jsimm...@goblin.punk.net wrote: Probably a bit premature to be asking this since I won't be able to physically access the machine until Monday, but here goes ... I have a machine that I admin remotely running 4.6 with all the patches. It's a firewall only

Re: IPSEC bringing down networking

2010-01-03 Thread Jiro
On 2010-01-03, Jeff Simmons jsimm...@goblin.punk.net wrote: Probably a bit premature to be asking this since I won't be able to physically access the machine until Monday, but here goes ... I have a machine that I admin remotely running 4.6 with all the patches. It's a firewall only machine

IPSEC bringing down networking

2010-01-02 Thread Jeff Simmons
Probably a bit premature to be asking this since I won't be able to physically access the machine until Monday, but here goes ... I have a machine that I admin remotely running 4.6 with all the patches. It's a firewall only machine with 6 ethernet interfaces, 4 of which are active, and has