[strongSwan] Overlapping rightsubnets - Is it possible to determine on which tunnel packet arrived?

Bharath Kumar cbkumar at gmail.com
Fri Apr 5 00:24:30 CEST 2013


Hi All,

I have a question on this scenario.

Left --- Strongswan Gateway
=====================

Two connection profiles

conn cisco-asa-1
   ....
   ....
   left=%defaultroute
   right = <ip-of-cisco-asa-1>
   rightsubnet=192.168.1.0/24


conn cisco-asa-2
   ....
   ....
   left=%defaultroute
   right = <ip-of-cisco-asa-2>
   rightsubnet = 192.168.1.0/24


As you can see, the rightsubnet is same for both connection profiles. I
want to be able to determine which tunnels the packets came thru when I
receive packets from remote hosts, say 192.168.1.9.

Is there any way to do that? Any help is greatly appreciated!


Thanks,
Bharath Kumar
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20130404/8ba552c1/attachment.html>


More information about the Users mailing list