[Swan] cannot get traffic to lan when using xauth and pool address is on lan segment

Tuomo Soini tis at foobar.fi
Wed Apr 19 20:15:07 UTC 2017


On Wed, 19 Apr 2017 21:18:06 +0200
Antonio Silva <asilva at wirelessmundi.com> wrote:

> it's working for me with leftsourceip=192.168.10.1 (server
> lan/gateway ip) and pool 192.168.10.206-210.
> 
> The proxy_arp is set to 0 on all interfaces.

I suggest you check setting when you have tunnel up.

> When set the tunnel without leftsourceip is when i don't have traffic
> to lan.
> 
> Now i do see the arp replies:
> 
> 21:16:05.120182 ARP, Request who-has 192.168.10.207 tell
> 192.168.10.25, length 46
> 21:16:05.904139 ARP, Reply 192.168.10.207 is-at f8:b1:56:b7:7f:d8,
> length 28
> 
> 
> The mac is from the lan device.

We have some automation in _updown to enable proxy arp when it's
needed.

-- 
Tuomo Soini <tis at foobar.fi>
Foobar Linux services
+358 40 5240030
Foobar Oy <http://foobar.fi/>


More information about the Swan mailing list