On 5/21/2014 8:25 AM, Vernon Fort wrote: >>> We don't have enough information. Check Shorewall FAQ 17 and if >>> that doesn't help, at least post the entire log message. -Tom > > What I have observed is when I have the DHCP vpn client connected, > the entire network come to a stop - nothing can connect to anything. > The 192.168.1.0/24 is the internal lan (loc) and the dhcp server is a > windows 2003 server. There is another static vpn tunnel as well and > it also loses connection to the 192.168.1.0 network. > > conn road-ikev2 left=%any leftcert=serverCert.pem > leftsubnet=192.168.1.0/24 right=%any rightauth=pubkey > rightcert=vfortCert.pem rightsourceip=%dhcp rightsubnet=0.0.0.0/24 > keyexchange=ikev2 auto=add > > If I do a shorewall dump > Shorewall .txt, do I preform this when the > vpn client is connected (i.e. brings the network to a halt) or when > shorewall is not running?
Dump when the vpn client is connected. -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ "Accelerate Dev Cycles with Automated Cross-Browser Testing - For FREE Instantly run your Selenium tests across 300+ browser/OS combos. Get unparalleled scalability from the best Selenium testing platform available Simple to use. Nothing to install. Get started now for free." http://p.sf.net/sfu/SauceLabs
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
