this is a follow up from my last post. I'm including my configuration
variables this time, maybe there's a problem somewhere.
I yet have to test the advice to to use ping -S from Vincent, but since
it's pretty time consuming with my other endpoint to make further test I
try to gather as much info I could possible need for further debugging.
As I told, ping from my m0m0 to remote ipsec endpoint works, but ping
from my local lan behind m0n0 cannot reach the other net behind the
remote ipsec gate. Basically as I saw the packets, m0n0 sent them to
internet default gateway of my provider.
Local subnet: Network
Remote subnet: 192.168.1.0/24
Remote gateway: 220.127.116.11
Phase 1 proposal (Authentication)
Netgotation mode: main
My identifier: My IP address
Encryption algorithm: 3DES
Hash algorithm: MD5
DH key group: 5 (1536 bit)
Pre-Shared Key: verylongstring
Phase 2 proposal (SA/Key Exchange)
Encryption algorithms: 3DES (the only one checked)
Hash algorithms: MD5
PFS key group: off
I've explicitely allowed the AH and ESP protocol in the rules and also
UDP Port 500.
When I ping from 10.x.y.z to 192.168.1.x it goes to the WAN gateway instead.
What could possible be cause for the m0n0wall not redirecting my LAN
pings to the remote net properly?