[Openswan Users] Win XP SP2 and NAT + OS 2.3.1

Jacco de Leeuw jacco2 at dds.nl
Mon May 30 16:45:46 CEST 2005


Fabien Tivolle wrote:

> have then upgraded to Kernel  2.6.11 and Openswan 2.3.1 but I have still 
> these error messages:
> 
> ignoring Vendor ID payload [MS NT5 ISAKMPOAKLEY 00000004]

You can ignore these, they are just informational.

> virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,%v4:192.168.0.0/16

This should be:
virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,
                 %v4:192.168.0.0/16,%v4:!192.168.204.0/24

Because 192.168.204.0/24 is your internal subnet, so it should not
be used for NAT.

>     rightsubnet=192.168.19.50/32

Use rightsubnet=vhost:%no,%priv instead.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl


More information about the Users mailing list