[strongSwan] Net-to-Net wrong source IP of VPN server.

Tobias Brunner tobias at strongswan.org
Mon May 2 11:20:33 CEST 2016

Hi Lukas,

> # ip route list table 220
> via dev eth0.2  proto static  src
> #
> where is locally attached, publicly reachable IP address and
> is default gw for this public IP address.

Looks strange.  The source address should be part of the local traffic
selector (, which is probably not.  Please
increase the log level for the knl subsystem to see what's going on
during the route/policy installation [1].


[1] https://wiki.strongswan.org/projects/strongswan/wiki/LoggerConfiguration

