[Openswan Users] XL2TP issues over openswan

Randy Wyatt rwyatt at nvtl.com
Tue Mar 2 15:09:38 EST 2010


All,

 

  We are trying to talk from an openswan gateway (as an xl2tp client) to
a Microsoft VPN Server.  The configuration is below.  We actually see
the SCCRQ packets being sent to the server,  but no responses.  A
windows XP dial-up networking vpn client works.

 

Any and all help would be appreciated.

 

 

The configuration is the following

conn l2tp-psk-client

            authby=secret

            pfs=no

            type=transport

            rekey=no

            left=%defaultroute

            leftid=@nvtl.mifi.local

            leftprotoport=17/1701

            right=216.188.66.XXX

            rightid=@seahawks.devnet.n***.*****

            rightprotoport=17/1701

            forceencaps=yes

            auto=add

 

We see the following ipsec policies

src 10.1.99.XXXX/32 dst 166.129.91.80/32 proto udp dport 1701

            dir in priority 2080

            tmpl src 0.0.0.0 dst 0.0.0.0

                        proto esp reqid 16393 mode transport

 

src 166.129.91.80/32 dst 10.1.99.XXX/32 proto udp sport 1701

            dir out priority 2080

            tmpl src 0.0.0.0 dst 0.0.0.0

                        proto esp reqid 16393 mode transport

 

Regards,

Randy

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20100302/86148400/attachment.html 


More information about the Users mailing list