On Thu, Nov 4, 2010 at 5:49 AM, Les Mikesell <lesmikesell at gmail.com> wrote: > Quick check is a traceroute from the remote server to a 192.168.144.x address. > If it doesn't go into the tunnel interface you need to add a route for the range > via the remote tunnel ip. Hrm. When I try to add such a route on one of the machines I want to reach, I get "SIOCADDRT: Network is unreachable". Maybe the simplest thing is to change the question: How can I cause packets forwarded from my LAN to avoid the VPN and go out via the regular default route?