[Openswan Users] Openswan servers behind NAT connection fails

Paul Wouters paul at xelerance.com
Thu Jan 18 07:30:48 EST 2007


On Thu, 18 Jan 2007, Tuomo Soini wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Utkarsh Shah wrote:
>
> > I don't think that ADSL modem is blocking 4500 or any other port as
> > other connection with same network scenario is working fine. In those
> > connection both the servers are behind NAT-box.
>
> Hey, You have ADSL modem doing NAT? That explains NAT-T not working
> properly. You need to disable ipsec passthrough from your NAT router or
> NAT-T won't work as it shoud.
>
> IPsec passthrough in NAT device is generally incompatible with IPsec
> NAT-Traversal.

Also, you might be struck with the "multiple connections behind the same
NAT router and ipsec passthrough" problem.

Paul


More information about the Users mailing list