[Openswan Users] change to NAT rules so pulic IP address of openswan boxes accessible from remote LAN?

M B sf1882 at gmail.com
Mon Jan 10 20:22:08 EST 2011

i have the following setup:


currently im unable to ping either of the public ip addresses on the
openswan VPN boxes (both have public IPs) from the remote LAN.  looks like
this is due to the openswan box
also being the default gateway for the respective LAN clients therefore the
LAN source IPs are not being NAT'd resulting in an unroutable source IP
arriving at the public interface of the other openswan box.  how can i fix
this on the openswan boxes?  can i force traffic from each local LAN to the
IP of the other sides openswan system to be NAT'd?  thx-

