[Openswan Users] 2 WinXP clients behind the same NAT Linux box

Jacco de Leeuw jacco2 at dds.nl
Thu Nov 17 16:19:02 CET 2005


Danilo Montagna wrote:

> I’m trying to connect two clients using WinXP-SP2 behind the same NAT 
> Linux box to a VPN server running OpenSwan 2.4 and L2tp 0.69..
> 
> The first client connects with no problem.. after the second client 
> tries to connect behind the same NAT, this error occur no the OpenSwan..

This is a known limitation. Some suggestions that may or may not work:

- Put the two clients behind another Openswan box and use plain IPsec
   between the two Openswan boxes.

- Replace Openswan with an implementation that supports multiple
   transport mode clients behind the same NAT router. Stinghorn is
   one such implementation (http://www.stinghorn.com/opensource/).
   Windows 2003 may support it too.

- Replace L2TP/IPsec with another protocol such as plain IPsec,
   SSH, OpenVPN, PPTP etc.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl
                     Mosquitos suck


More information about the Users mailing list