[Openswan Users] net-to-net and nat-t ?

Paul Guermonprez paul.ml at integragen.com
Mon Jun 28 17:32:06 CEST 2004


hello,


i have 2 suse 9.1 boxes (kernel 2.6) behind 2 routers :

router(Nexland) -- suse_VPN_left -- subnet 172.16.2.X
   ||
INTERNET
   }}
router(Linksys) -- suse_VPN_right -- subnet 192.168.1.X

both routers have a fixed public IP.
both suse_VPN boxes have a private IP on respective subnets.
i try to build a nat-t solution, starting from a non-nat
ipsec.conf file, can't make it work. i just can't find
a working example on the net or the example files.
all i can find are net-to-roadwarrior, with nat only on 1 side.

i use freeswan from suse (looks like openswan) :
http://www.suse.de/~garloff/linux/FreeSWAN/RPMs-91/freeswan-2.04_1.5.4-1.2.i586.rpm
	FreeS/WAN Version 2.04 X.509-1.5.4 LIBCURL PLUTO_USES_KEYRR
	including NAT-Traversal patch (Version 0.6)

i forwarded ports UDP 500 and 4500 on both routers
to suse boxes. anything else needed on the router side ?
is VPN passthrough supposed to be on or off ?


any ideas ? example file ?
thanks, paul.



More information about the Users mailing list