[Openswan Users] L2TP/IPSec not working without NAT

Muenz, Michael m.muenz at spam-fetish.org
Tue Apr 24 10:25:49 EDT 2012


Am 24.04.2012 13:21, schrieb Willie Gillespie:
> On 04/24/2012 01:02 AM, Muenz, Michael wrote:
>> rightsubnet=vhost:%priv,%no
>
> In my configs, I have two conns defined.  One with rightsubnet (NAT), 
> and one without (no NAT).
>
> You can do this as follows:
>
> conn l2tp-X.509-NAT
>     rightsubnet=vhost:%no,%priv
>     also=l2tp-X.509-noNAT
>
> conn l2tp-X.509-noNAT
>     # everything you would normally have, except for rightsubnet

I had l2tp-X.509-NAT with "rightsubnet=vhost:%priv,%no" and 
l2tp-X.509-noNAT
with "rightsubnet=vhost:%no,%priv".

Shouldn't this work out?

Thanks
Michael


More information about the Users mailing list