[Openswan Users] openswan/xl2tpd server behind nat

Jacco de Leeuw jacco2 at dds.nl
Tue Sep 4 03:03:52 EDT 2007


Gurvinder Singh wrote:

> I am using Openswan U2.4.9/K2.6.15.7 (netkey). my openswan/xl2tpd server
> is behind the nat (static ip), i m not able to connect winxp ipsec/l2tp

>         plutodebug="control parsing"

It's probably not a bug in Openswan, so you may want to use plutodebug=none
otherwise you get a lot of debugging info you don't really need.

>         virtual_private=%v4:
> 10.10.10.0/16,%v4:192.168.0.0/16,%v4:172.16.0.0/16

I would recommend:
virtual_private=%v4:10.0.0.0/8,%v4:192.168.0.0/16,%v4:172.16.0.0/12,%v4:!10.10.10.0/24

Change that /24 to whatever subnet mask you are using on your
internal LAN.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl



More information about the Users mailing list