Re: Local routing issue when iked running

2014-02-27 Thread Stuart Henderson
On 2014-02-27, Josh mylis...@gmail.com wrote: On Thu, Feb 27, 2014 at 11:00 AM, Stuart Henderson s...@spacehopper.org wrote: Try tcpdumping packets going over the ipsec tunnel, do you see those packets which should be local actually being sent over the tunnel? If so, I don't have an

Re: Local routing issue when iked running

2014-02-27 Thread Josh
On Fri, Feb 28, 2014 at 9:52 AM, Stuart Henderson s...@spacehopper.org wrote: I'm sure it's a bug, I suspect possibly in some dark corner of radix.c. I haven't heard of anybody else hitting this same problem so in a way I'm quite glad it's not just me :) On box1 you have these flows

Local routing issue when iked running

2014-02-26 Thread Josh
Hi @misc, I am facing an issue between two boxes (box1 and box2) connected through an IPsec tunnel. They are both on the same subnet and both listen on port 22 (sshd running) When the ipsec tunnel is down and encap routes are flushed on both boxes (ipsecctl -F), performing a telnet ip_of_box1 22

Re: Local routing issue when iked running

2014-02-26 Thread Stuart Henderson
On 2014-02-26, Josh mylis...@gmail.com wrote: Hi @misc, I am facing an issue between two boxes (box1 and box2) connected through an IPsec tunnel. They are both on the same subnet and both listen on port 22 (sshd running) When the ipsec tunnel is down and encap routes are flushed on both

Re: Local routing issue when iked running

2014-02-26 Thread Josh
On Thu, Feb 27, 2014 at 11:00 AM, Stuart Henderson s...@spacehopper.org wrote: Try tcpdumping packets going over the ipsec tunnel, do you see those packets which should be local actually being sent over the tunnel? If so, I don't have an answer for this, but I've seen it myself, though only