[Openswan Users] UDP keepalives

sertys at estates.bg sertys at estates.bg
Sun May 30 13:30:19 EDT 2010


Would a setup of custom udp pings every 80 seconds keep the udp hole open
on a NAT gateway. My initial thought is to have empty packets sent to the
negotiated port from `ipsec auto --status`, but to have the ttl with them
set to exact value so that the packet WILL NOT get forwarded to the client
and thus not activate the receiver/eat power. And after that to have a DPD
timer set at about 500 seconds just to make sure. The roadwarriors are
nokia vpn clients.


More information about the Users mailing list