[Openswan Users] Any known problems with NAT Traversal with Linux 2.4.26/2.6.7?

Herbert Xu herbert at gondor.apana.org.au
Wed Jul 21 22:21:17 CEST 2004


Toby Corkindale <openswan at wintrmute.net> wrote:
>
> pluto[2850]: packet from 192.168.2.11:4500: Quick Mode message is for a non-existent (expired?) ISAKMP SA
> pluto[2850]: "roadwarrior"[4] 193.30.123.321:4500 #7: max number of retransmissions (2) reached STATE_QUICK_R1
> 
> 
> Now, Look at the second to last line there - notice how the packet has come
> from the NATed host's *internal* address, whereas all the previous packets
> were from the external address..
> 
> Do you think that might have something to do with the problem?

Quite likely.  Please take a tcpdump on the server side and show us
what it says.
-- 
Visit Openswan at http://www.openswan.org/
Email: Herbert Xu ~{PmV>HI~} <herbert at gondor.apana.org.au>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt


More information about the Users mailing list