[Openswan Users] Forcing udp-encaps when not on a NAT'd connection?

Nate Carlson natecars at natecarlson.com
Thu Jun 10 22:54:45 CEST 2004


On Thu, 10 Jun 2004, Nate Carlson wrote:
> > Perhaps it can't deal with forced NAT-T?  This should be per conn.  
> > Check out how DPD is dealt with in the auto/_confread/_readconf and
> > whack to turn this into a per-conn option.  It would definately get
> > accepted into mainline code.
> 
> Sure, I'll give it a shot. Thanks for the starting point.

Eesh. I took a look; it's a wee bit out of my league. This is a bit 
tougher than the global tweak.  :)

In any case, the global tweak may actually be a nice thing to have - IE, 
if you're on a network that blocks ESP, it'd be nice to have a tweak to 
flip to force NAT-T.

------------------------------------------------------------------------
| nate carlson | natecars at natecarlson.com | http://www.natecarlson.com |
|       depriving some poor village of its idiot since 1981            |
------------------------------------------------------------------------


More information about the Users mailing list