[Openswan Users] L2TP/IPSec not working without NAT

Willie Gillespie wgillespie+openswan at es2eng.com
Tue Apr 24 07:21:48 EDT 2012


On 04/24/2012 01:02 AM, Muenz, Michael wrote:
> rightsubnet=vhost:%priv,%no

In my configs, I have two conns defined.  One with rightsubnet (NAT), 
and one without (no NAT).

You can do this as follows:

conn l2tp-X.509-NAT
     rightsubnet=vhost:%no,%priv
     also=l2tp-X.509-noNAT

conn l2tp-X.509-noNAT
     # everything you would normally have, except for rightsubnet


More information about the Users mailing list