[Openswan Users] Roadwarior problem (Windows XP behind NAT, VPN server on public IP)

Jacco de Leeuw jacco2 at dds.nl
Thu Jun 23 11:40:46 CEST 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Andrej Trobentar wrote:

| Roadwarior is :
| - Windows XP (all updates from Windows Update)
| - LAN IP 192.168.15.177
|
| VPN server is :
| - RH 7.3, kernel 2.4.24
| - internal IP 192.168.0.1
|
| But when the roadwarior is behind NAT I can't connect

virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,
~                %v4:192.168.0.0/16,%v4:!192.168.15.0/24

You should change this to:

virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,
~                %v4:192.168.0.0/16,%v4:!192.168.0.0/24

This means that all these addresses are allowed for the Road
Warrior's LAN IP address (e.g. 192.168.15.177 in your example)
*except* 192.168.0.0/24 because that particular range is reserved
for the VPN server's internal LAN.

Jacco
- --
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFCunWN0GeQNf03tTcRAsOuAJsG0z/AvixYZYn1abI+T8hK2ANpYACeJIha
AuHu90pB2xhVld4+PsJYbBY=
=9T2C
-----END PGP SIGNATURE-----


More information about the Users mailing list