[Openswan Users] openswan, cisco pix and nat problem

Paul Wouters paul at xelerance.com
Thu May 12 15:40:35 CEST 2005


On Thu, 12 May 2005, Markus Feilner wrote:

> I have a problem with connections to a cisco pix. The VPN Partner wants me to
> nat/masquerade my traffic with my outside public IP.

I do not understand the question. IPsec traffic cannot be rewritten by NATs. 
What is it exactly that you want or need to get done?

> Has anybody solved Masquerading/Natting the VPN traffic, so that connections
> from several local to several remote hosts are possible?

that is still problematic in most cases. You are better of setting up a
subnet-subnet tunnel.

Paul


More information about the Users mailing list