[Openswan Users] l2tpd does not finish pppd connection

Rafael Andara rafael.andara at gmail.com
Wed May 16 10:19:17 EDT 2007


I did the changes on the ipsec.conf, also as Tomasz Grzelak
told me I put the leftnexthop parameter and I worked.

Thank you.

PS: I'm going to test xl2tpd, I will let you know of my result.

Great tutorial.

On 5/16/07, Jacco de Leeuw <jacco2 at dds.nl> wrote:
>
>
> Hi Rafael,
>
> > I'm using Debian 4.0 with kernel 2.6.18-4-686
> > l2tpd Version 0.70-pre20031121-2.2
>
> There is something odd with l2tpd on Debian 3.x (although I personally
> haven't tried 4.x). Could you compile and try xl2tpd?
>
> >         plutodebug="control"
>
> Use none, unless you are a developer.
>
> >         virtual_private=%v4:
> 10.0.0.0/8,%v4:192.168.0.0/16,%v4:172.16.0.0/12
>
> Exclude your internal subnet:
> virtual_private=%v4:
> 10.0.0.0/8,%v4:192.168.0.0/16,%v4:172.16.0.0/12,%v4:!172.16.3.0/24
>
> > conn L2TP-PSK
> >         authby=secret
> >         right=%any
> >         rightprotoport=17/%any
>
> There is currently a known problem with this combination, if NAT is
> involved. Probably the easiest solution would be to switch to
> certificates or to use rightprotoport=17/1701 (which unfortunately
> drops support for Mac clients).
>
> And if you want to support Vista client, you will have to add:
>
> rightsubnet=vhost:%no,%priv
>
> Jacco
> --
> Jacco de Leeuw                         mailto:jacco2 at dds.nl
> Zaandam, The Netherlands           http://www.jacco2.dds.nl
>
>


-- 
Saludos.
Linux Registered User 422700
-RA-
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20070516/b4ec590f/attachment-0001.html 


More information about the Users mailing list