[Openswan Users] Openswan and Safenet behind NAT

Paul Wouters paul at xelerance.com
Sun Jul 24 18:03:33 CEST 2005


On Sun, 24 Jul 2005, famleone at tin.it wrote:

> Hi , I try to connect a laptop with Safenet client with PSK  with connection
> by router with nat or modem to

not a recommended setup to combine nat and psk.

> /etc/ipsec.conf
>
> config setup
>       nat_traversal=yes

add:    virtual_private=%v4:10.0.0.0/8,%v4:192.168.0.0/16,!%v4:192.168.122.0/24

>     conn fw1
>       left=22.33.44.11
>       leftsubnet=192.168.122.0/24
>       type=tunnel
>       authby=secret
>       pfs=no
>       right=%any
>       auto=add

add rightsubnet=vhost:%no,%priv

Paul


More information about the Users mailing list