[Openswan Users] NAT-T not working

CrashOverload at gmx.de CrashOverload at gmx.de
Thu Apr 2 08:58:35 EDT 2009


Hi,

got a problem to get the IPsec tunnel working with NAT-T.

Following situation:
I got my IPSec server behind a firewall and want to connect to a remote location.

The problem is, that the server always connects to the remote location over port 500 and not over port 4500 which is used for NAT-T!

/var/log/secure:

sending 592 bytes for main_outI1 through eth0:1:500 to 65.67.55.22:500(using #2)

/etc/ipsec.conf
config setup
        forwardcontrol=yes
        nat_traversal=yes


At the moment, the SA could be established, but I cannot access the server or the network behind.
-- 
Psssst! Schon vom neuen GMX MultiMessenger gehört? Der kann`s mit allen: http://www.gmx.net/de/go/multimessenger01


More information about the Users mailing list