[Openswan Users] nat-t

Paul Wouters paul at xelerance.com
Fri Apr 28 23:16:38 CEST 2006


On Fri, 28 Apr 2006, Mitja Sladovic wrote:

> User connects with softremote vpn client, that sends:
> packet from 200.1.29.38:500: ignoring Vendor ID payload
> [draft-ietf-ipsec-nat-t-ike-00]
> packet from 200.1.29.38:500: received Vendor ID payload
> [draft-ietf-ipsec-nat-t-ike-02_n]

These are just the announcing that the ends support NAT-T
encapsulation. If it is not needed (eg no NAT detected) they
will not encapsulate.

> So, NAT-T is enabled, but I don't want nat-t for this connection...
> Is it possible, to somehow disable nat-t for this connection?

iIf you are not behind a NAT, it wil not be used. if you ARE behind
a NAT, it will not work without NAT-T. What do you think your problem
is?

Paul


More information about the Users mailing list