[Openswan Users] NAT-T problem!?

Thomas Irmen tirmen at gmx.net
Mon May 8 23:56:13 CEST 2006


Hi,

I have the follwoing setup:

WinXP (10.0.0.1) <-> nat router (dyn) <-> internet <-> openswan (fix ip)

If I try to ping the remote host (openswan) I see in the logfile that the
tunnel comes up ("SA established").

ping work, but the the pong is missed - so no reply is received.

In my opinion something with the iptables setup - I guess the masquerading -
doesn´t work.

the follwing 2 rules I tried separately:
iptables -t nat -A POSTROUTING -p \! 50 -o eth1 -j MASQUERADE
iptables -t nat -A POSTROUTING -s \! 10.0.0.0/8  -o eth1 -j MASQUERADE

Could someone please give me a hint!?

Thanks,
Thomas



-- 
Echte DSL-Flatrate dauerhaft für 0,- Euro*!
"Feel free" mit GMX DSL! http://www.gmx.net/de/go/dsl


More information about the Users mailing list