[Openswan Users] nat-t

Paul Wouters paul at xelerance.com
Fri Apr 28 23:31:02 CEST 2006


On Fri, 28 Apr 2006, Mitja Sladovic wrote:

> > iIf you are not behind a NAT, it wil not be used. if you ARE behind
> > a NAT, it will not work without NAT-T. What do you think your problem
> > is?
> >
> User has ipsec pass-trough enabled on router, so there is no need for nat-t
> ...
> (with nat_traversal set to no, connection works ok)

no. ipsec passthrough is completely broken. Don't use it. Disable it. If you
cannot disable it, through the router away.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list