[Openswan Users] OpenSwan on RH ES 3

Paul Wouters paul at xtdnet.nl
Tue Apr 20 20:11:51 CEST 2004


On Tue, 20 Apr 2004 rspeelmans at mainit.nl wrote:

> "nattest"[3] 213.201.157.2:1 #3: cannot respond to IPsec SA request 
> because no connection is known for 
> 192.168.200.0/24===213.201.157.1...213.201.157.2:1[192.168.20.6]===192.168.20.6/32
 
> My ipsec.conf looks as following:
> -----------------------------------------------------------
> config setup
>         uniqueids=yes
>         plutodebug=none
>         klipsdebug=none
>         interfaces=%defaultroute
>         nat_traversal=yes
>         virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/16,%v4:192.168.0.0/16

This should be:

	virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/16,%v4:192.168.0.0/16,!%4:192.168.200.0/24


Paul



More information about the Users mailing list