Hi<br><br>I am using Openswan U2.4.9/K2.6.15.7 (netkey). my openswan/xl2tpd server is behind the nat (static ip), i m not able to connect winxp ipsec/l2tp client to openswan server which is also behind the nat(dynamic ip). when i use direct static ip on openswan server then it works but when i put behind the nat, its not working. I am unable to find the problem.
<br><br>Following is my ipec.conf configuration:-<br><br>version 2.0<br><br>config setup<br> nat_traversal=yes<br> uniqueids=no<br> plutodebug="control parsing"<br> virtual_private=%v4:
<a href="http://10.10.10.0/16,%v4:192.168.0.0/16,%v4:172.16.0.0/16">10.10.10.0/16,%v4:192.168.0.0/16,%v4:172.16.0.0/16</a><br> strictcrlpolicy=no<br><br><br><br>include /etc/ipsec.d/examples/no_oe.conf<br><br>conn road
<br> left=<a href="http://10.10.10.125">10.10.10.125</a><br> right=%any<br> rightsubnet=vhost:%priv,%no<br> auto=add<br> authby=rsasig<br> failureshunt=reject<br> disablearrivalcheck=no
<br> rightrsasigkey=%cert<br> leftprotoport=17/1701<br> rightprotoport=17/1701<br> leftsendcert=yes<br> leftrsasigkey=%cert<br> leftcert=test.pem<br> leftid="C=IN,ST=test,L=test,OU=test,CN=test,emailAddress=
<a href="mailto:test@test.cxm">test@test.cxm</a>"<br> pfs=no<br> type=transport<br> keylife=8h<br> rekey=yes<br> rekeymargin=9m<br> keyingtries=3<br> leftnexthop=<a href="http://10.10.10.1">
10.10.10.1</a><br> dpddelay=30<br> dpdtimeout=120<br> dpdaction=clear<br> compress=no<br> auth=esp<br><br>Is there any solution for this problem..?<br><br>Thanks for help in advance.<br>
<br><br>Best regards<br><br>Gurvinder Singh<br><br><br><br><br><br><br><br><br>