[Openswan Users] openswan on a bridge behind NAT

Vieri rentorbuy at yahoo.com
Thu May 31 07:13:46 EDT 2007


Hi,

I am trying to establish a working IPsec tunnel with a
peer behind NAT (site1).

<Openswan router (site2)>--- Internet ---<Linux
router>---<Linux bridge with openswan (site1)>

The tunnel is up but pings fail (no answer) although
they seem to be passing through according to
tcpdump.txt.

Are there known problems with having openswan 2.4.7 on
a bridge with kernel 2.6.17 or 2.6.16?
If so, any solution?

http://fhm.zapto.org/ipsec/ipsec_barf-site1.txt
http://fhm.zapto.org/ipsec/ipsec_barf-site2.txt
http://fhm.zapto.org/ipsec/tcpdump.txt

Note that I tried this:
<Openswan router (site2)>--- Internet ---<Linux
router>---<Linux bridge>---<Openswan router (site1)>
and all worked fine (could ping and receive answer
from remote subnet).

Thanks,

Vieri


      ____________________________________________________________________________________
Luggage? GPS? Comic books? 
Check out fitting gifts for grads at Yahoo! Search
http://search.yahoo.com/search?fr=oni_on_mail&p=graduation+gifts&cs=bz


More information about the Users mailing list