[Openswan Users] CISCO heartburn turns in to WatchGuard heartburn

Lorens Kockum openswan-users-254 at lists.lorens.org
Thu Feb 3 00:18:33 CET 2005


On Wed, Feb 02, 2005 at 11:28:59AM -0500, Jeff Herring wrote:
> Setting nat_traversal=yes did the trick for the Ciscos

:-)

> AND broke all of my tunnels to WatchGaurd fireboxes...

:-(

Sorry about that.  Never used WatchGuard.  I'm afraid I don't
have the slightest idea that I have reason to think could be
helpful here.

> Now it looks like the WatchGaurds are doing nat even though I don't want it.
> i.e. Now pings go out esp packets but come back udp 4500...
> 
> Anyone have any ideas? I guess there is no way to tunnel by tunnel turn off 
> nat_traversal....

-- 
#include <std_disclaim.h>                          Lorens Kockum


More information about the Users mailing list