[strongSwan] Connection works, but no access to network

Tobias Brunner tobias at strongswan.org
Tue Jul 30 19:21:06 CEST 2013

Hi Gregg,

First, let me point out the "Forwarding and Split-Tunneling" guide on
our wiki [1].

> iface eth0 inet static
> address
> netmask
> gateway
> network
> broadcast
> dns-search XXXX.com
> dns-nameservers XXX.XXX.XXX.XXX

Do the hosts behind the VPN gateway ( know that they have
to send packets for to your VPN gateway at and not the default gateway at  If not, you
will have to change the routing somehow, for instance, add a route to
each host behind the VPN (manually, or e.g. via DHCP option 121), or add
a static route on your default gateway that directs the traffic to your
VPN gateway.



