[Openswan Users] IPsec configuration

Neal Murphy neal.p.murphy at alum.wpi.edu
Mon Nov 24 03:18:14 EST 2014


As a guess, add 'forceencaps=yes' to B's config; that should force it to start 
with NAT traversal.

On Monday, November 24, 2014 01:35:35 AM Ted Victorio wrote:
> Hello gurus,
> 
> My IPsec link (90.0.0.9--192.168.1.150) works fine if PC A initiates "ipsec
> auto --up A_to_B" However, if PC B initiates "ipsec auto --up B_to_A", the
> handshake fails since the router converts main mode 1 from 192.168.1.150
> as if IPsec initiated from 90.0.0.3. Appreciate any suggestion to solve
> this.


More information about the Users mailing list