[Openswan Users] VPN wxp-NAT-NAT-openswan

Paul Wouters paul at xelerance.com
Mon Sep 18 00:48:59 EDT 2006


On Sun, 17 Sep 2006, Miguel A Felipe wrote:

> Now im getting again the first message of all, this have happened when I
> have add the line to the ipsec.conf:
>
> rightsubnet=vhost:%priv
>
> Sep 17 22:04:22 cf01fw01 pluto[1363]: "L2TP-PSK-noNAT"[2] 87.218.195.195 #1:
> cannot respond to IPsec SA request because no connection is known for
> 80.38.102.7/32===192.168.1.2:17/1701...87.218.195.195[@xxxxxxxxxxxx]:17/1701

check the startup messages of openswan about "NAT-T support" and whether it
claims it is enabled or disabled. If disabled, then double check your
virtual_private line on the server end. (and if using klips, make sure you
applied the nat-t patch, for netkey no patch is needed).

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list