Re: [strongSwan] Access to local subnet when tunnel up

2009-11-16 Thread Graham Hudspith
Dimitrios, That is a brilliant idea, thank you. Out-of-the-box thinking. Or is that out-of-the-table ? :-) Graham. 2009/11/15 Dimitrios Siganos dimit...@siganos.org I can think of another option might might make the whole setup cleaner. Introduce another route table (e.g. 219), which has

[strongSwan] Restricting access to list of subnets

2009-11-16 Thread Graham Hudspith
All, Having learnt how to provide access to the local subnet when the tunnel is up, I now want to restrict the list of subnets available through the tunnel. In other words, I want everything to go OFF-tunnel unless it is in the supplied list of subnets. So, I set up a normal tunnel and provide a