[Openswan Users] Changing the IKE port from 500

Paul Wouters paul at xelerance.com
Fri Jun 19 22:23:48 EDT 2009


On Sat, 20 Jun 2009, Nikolay Dvoeglazov wrote:

> I need to change the default IKE port from 500 to something other like
> 5000 as my ISP seems to have problems with this port.
>  
> I have tried using plutoopts="--ikeport 5000" but it seems to have
> limited effect.

That only changes the listen port. It does not change the port where
plutp sends messages too.

The easiest might be to have a NAT rule to change outgoing port 500
to outgoing port 5000 using iptables.

Paul


More information about the Users mailing list