[Users] ipsec_updown to add/remove a failover route?

From: Dan Mathews (dmathews_at_comexpertsgroup.com)
Date: Wed Dec 04 2002 - 09:34:14 CET


Howdy -

I have been using the freeswan client for network-to-network connectivity for
a while, and am now interested in how I can use the _updown script to create
an alternate path when my ISP (and VPN) connection drops.

I have a 3 site hub-and-spoke VPN with Internet as the primary and a 128k
private line as the secondary. Today, when the tunnel drops, I manually
change the routes on the Linux boxes. This is kludgy, and requires my
presence periodically when an ISP outage does happen.

Is there a way I can catch my tunnel dropping on both sides and have each
_updown script perform the appropriate "route add" ? Then on the flip side,
when the ISP has resolved their problems, can I have the _updown script
perform a "route del" on the backup route once the IPSEC tunnel is back active?

If I missed a pertinent discussion thread, please point me in the right
direction.

Thanks in advance!
Dan

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Fri Dec 06 2002 - 05:21:02 CET