VPN S2S IPSec. Linux strongswan to AWS VPN and routing problem
I want to connect my Linux Centos 7 to AWS VPC VPN Ipsec.
I have got problem with a routing. My IPSec connection via Strongswan is UP.
conn Tunnel1
auto=start
left=%defaultroute
leftid=142.XX.XXX.13
right=3.XX.XXX.12 type=tunnel
leftauth=psk
rightauth=psk
keyexchange=ikev1
ike=aes128-sha1-modp1024
ikelifetime=8h
esp=aes128-sha1-modp1024
lifetime=1h
keyingtries=%forever
leftsubnet=10.19.0.5/16
rightsubnet=10.218.0.0/16
dpddelay=10s
dpdtimeout=30s
dpdaction=restart
mark=100
Can You tell me how my routing should be set for example for Tun1? I want to see 10.218.0.0/16 subnet from my linux server.
Remote IPSec ip: 3.XX.XXX.12,
Remote local IP: 10.218.0.0/16
Linux public IP: 142.XX.XXX.13,
Linux local IP: 10.19.0.5/16
linux networking routing aws strongswan
add a comment |
I want to connect my Linux Centos 7 to AWS VPC VPN Ipsec.
I have got problem with a routing. My IPSec connection via Strongswan is UP.
conn Tunnel1
auto=start
left=%defaultroute
leftid=142.XX.XXX.13
right=3.XX.XXX.12 type=tunnel
leftauth=psk
rightauth=psk
keyexchange=ikev1
ike=aes128-sha1-modp1024
ikelifetime=8h
esp=aes128-sha1-modp1024
lifetime=1h
keyingtries=%forever
leftsubnet=10.19.0.5/16
rightsubnet=10.218.0.0/16
dpddelay=10s
dpdtimeout=30s
dpdaction=restart
mark=100
Can You tell me how my routing should be set for example for Tun1? I want to see 10.218.0.0/16 subnet from my linux server.
Remote IPSec ip: 3.XX.XXX.12,
Remote local IP: 10.218.0.0/16
Linux public IP: 142.XX.XXX.13,
Linux local IP: 10.19.0.5/16
linux networking routing aws strongswan
add a comment |
I want to connect my Linux Centos 7 to AWS VPC VPN Ipsec.
I have got problem with a routing. My IPSec connection via Strongswan is UP.
conn Tunnel1
auto=start
left=%defaultroute
leftid=142.XX.XXX.13
right=3.XX.XXX.12 type=tunnel
leftauth=psk
rightauth=psk
keyexchange=ikev1
ike=aes128-sha1-modp1024
ikelifetime=8h
esp=aes128-sha1-modp1024
lifetime=1h
keyingtries=%forever
leftsubnet=10.19.0.5/16
rightsubnet=10.218.0.0/16
dpddelay=10s
dpdtimeout=30s
dpdaction=restart
mark=100
Can You tell me how my routing should be set for example for Tun1? I want to see 10.218.0.0/16 subnet from my linux server.
Remote IPSec ip: 3.XX.XXX.12,
Remote local IP: 10.218.0.0/16
Linux public IP: 142.XX.XXX.13,
Linux local IP: 10.19.0.5/16
linux networking routing aws strongswan
I want to connect my Linux Centos 7 to AWS VPC VPN Ipsec.
I have got problem with a routing. My IPSec connection via Strongswan is UP.
conn Tunnel1
auto=start
left=%defaultroute
leftid=142.XX.XXX.13
right=3.XX.XXX.12 type=tunnel
leftauth=psk
rightauth=psk
keyexchange=ikev1
ike=aes128-sha1-modp1024
ikelifetime=8h
esp=aes128-sha1-modp1024
lifetime=1h
keyingtries=%forever
leftsubnet=10.19.0.5/16
rightsubnet=10.218.0.0/16
dpddelay=10s
dpdtimeout=30s
dpdaction=restart
mark=100
Can You tell me how my routing should be set for example for Tun1? I want to see 10.218.0.0/16 subnet from my linux server.
Remote IPSec ip: 3.XX.XXX.12,
Remote local IP: 10.218.0.0/16
Linux public IP: 142.XX.XXX.13,
Linux local IP: 10.19.0.5/16
linux networking routing aws strongswan
linux networking routing aws strongswan
asked Feb 1 at 23:32
debekdebek
3219
3219
add a comment |
add a comment |
0
active
oldest
votes
Your Answer
StackExchange.ready(function() {
var channelOptions = {
tags: "".split(" "),
id: "106"
};
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function() {
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled) {
StackExchange.using("snippets", function() {
createEditor();
});
}
else {
createEditor();
}
});
function createEditor() {
StackExchange.prepareEditor({
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: false,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: null,
bindNavPrevention: true,
postfix: "",
imageUploader: {
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
},
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
});
}
});
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function () {
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f498224%2fvpn-s2s-ipsec-linux-strongswan-to-aws-vpn-and-routing-problem%23new-answer', 'question_page');
}
);
Post as a guest
Required, but never shown
0
active
oldest
votes
0
active
oldest
votes
active
oldest
votes
active
oldest
votes
Thanks for contributing an answer to Unix & Linux Stack Exchange!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function () {
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f498224%2fvpn-s2s-ipsec-linux-strongswan-to-aws-vpn-and-routing-problem%23new-answer', 'question_page');
}
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown