[Openswan Users] Again O/Swan& l2tp: no connection has been authorized -sorry-

Jacco de Leeuw jacco2 at dds.nl
Thu May 27 15:22:55 CEST 2004


Your VPN gateway is behind a NAT router, right? The router itself is
not doing IPsec? According to the barf output, you have only one
network interface. This is a bit unusual for a VPN gateway. I have
never tested L2TP/IPsec with just one network card , so you are
on your own in this.

> 172.26.0.0/24===80.25.248.190[****]:17/0---172.26.0.1...%any:17/1701
> left subnet----> external router ip------> internal route ip...Roadwarrior
> 17/1701

If you are doing NAT, then it seems you have forgotten to install
the NAT-T update (Q818043) on Windows.  The :17/0 is used only by
non-updated Windows clients.

Also, be sure to forward UDP ports 500 and 4500 on your NAT device
to the VPN gateway.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl


More information about the Users mailing list