I have sprint dsl. I have the dsl modem configured as a bridge. My WhiteBox 4 box does pppoe for the connection. I use rp-pppoe. When I start it up (pppoe-start), everything works fine and dandy. I have my internal network masqueraded to the internet. Everything works great. The gateway is on the net and so are my internel hosts. My ifconfig is as follows:

eth0 Link encap:Ethernet HWaddr 00:40:F4:5E:3D:41
inet6 addr: fe80::240:f4ff:fe5e:3d41/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:12990 errors:0 dropped:0 overruns:0 frame:0
TX packets:10359 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:5128363 (4.8 MiB) TX bytes:1091459 (1.0 MiB)
Interrupt:11 Base address:0xa400

eth1 Link encap:Ethernet HWaddr 00:0A:5E:56:0E:51
inet addr:192.168.3.1 Bcast:192.168.3.255 Mask:255.255.255.0
inet6 addr: fe80::20a:5eff:fe56:e51/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:6264 errors:0 dropped:0 overruns:0 frame:0
TX packets:5140 errors:0 dropped:0 overruns:0 carrier:8
collisions:10 txqueuelen:1000
RX bytes:834585 (815.0 KiB) TX bytes:2964465 (2.8 MiB)
Interrupt:10 Base address:0xa000

lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:61 errors:0 dropped:0 overruns:0 frame:0
TX packets:61 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:6600 (6.4 KiB) TX bytes:6600 (6.4 KiB)

ppp0 Link encap:Point-to-Point Protocol
inet addr:71.0.210.113 P-t-P:71.0.208.1 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1492 Metric:1
RX packets:2124 errors:0 dropped:0 overruns:0 frame:0
TX packets:1567 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:3
RX bytes:1985717 (1.8 MiB) TX bytes:194344 (189.7 KiB)

The second I start up openswan (service ipsec start), the internet goes down. Can't ping out to the internet. Even when the firewall is completely open, no internet. When openswan is started, I get this when I ping:

ping: unknown host some.server.com

I get the net back when I stop openswan (service ipsec stop).

my route command shows this when ipsec is off:

Destination Gateway Genmask Flags Metric Ref Use Iface
mo-71-0-208-1.d * 255.255.255.255 UH 0 0 0 ppp0
192.168.3.0 * 255.255.255.0 U 0 0 0 eth1
169.254.0.0 * 255.255.0.0 U 0 0 0 eth1
default mo-71-0-208-1.d 0.0.0.0 UG 0 0 0 ppp0

route shows this when ipsec is on:

Destination Gateway Genmask Flags Metric Ref Use Iface
71.0.208.1 * 255.255.255.255 UH 0 0 0 ppp0
192.168.3.0 * 255.255.255.0 U 0 0 0 eth1
169.254.0.0 * 255.255.0.0 U 0 0 0 eth1
default 71.0.208.1 128.0.0.0 UG 0 0 0 ppp0
128.0.0.0 71.0.208.1 128.0.0.0 UG 0 0 0 ppp0
default 71.0.208.1 0.0.0.0 UG 0 0 0 ppp0

I suck at interpreting these route tables. I just thought I would post them. Please help.