[strongSwan-dev] Fwd: DNS packets not going through tunnel with remote_ts=0.0.0.0

geethu joseph j.geethus at gmail.com
Thu May 23 11:10:00 CEST 2019


Hi all,

I have configured dns servers in Strongswan responder and on establishing
IPSEC tunnel from client, dns server IPs are getting installed in client's
resolv.conf successfully.
But on trying ping or nslookup to the dns servers from client, packets are
not going through the tunnel. Its transmitting as plain text packets. In
client swanct.conf remote_ts is configured as 0.0.0.0.

Is this the expected scenario or how the client  access dns nameservers
through secgw. Please advise.

Thanks
Geethu Joseph
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/dev/attachments/20190523/530754cb/attachment.html>


More information about the Dev mailing list