On Tue, 2019-04-09 at 17:29 +0300, David Woodhouse wrote: > On Tue, 2019-04-09 at 17:22 +0300, David Woodhouse wrote: > > > > DST is the "server", right? And SRC is the one on which we're running > > OpenConnect? So if you add '-vvv' to the OpenConnect arguments you > > should see it receiving the UDP packets and attempting to decode > > them? > > You did say OpenConnect was saying that the ESP session was > established, right? > > Can you just ssh to the other end over the VPN (ssh 172.16.0.2)? FWIW I can't ping 172.16.0.2 from my client either, which is odd. But everything else, including netperf, is working over that link. And I *can* ping 172.16.0.1 (the client) from the server side.
Attachment:
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ openconnect-devel mailing list openconnect-devel@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/openconnect-devel