Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

RE: [Users] NAT Traversal

From: Paul Wouters <paul(at)xtdnet.nl>
Date: Wed Feb 26 2003 - 08:45:54 EST


On Wed, 26 Feb 2003, Jeroen de Meijer wrote:

> To be sure I understand things correctly:
> This is what I want to do:
>
> Super FreeS/WAN client-------NAT Firewall------internet-------Super
> FreeS/WAN gateway-----localnet
>
> If I understand you correctly both the client and the gateway should
> have the patch (so they know how to tunnel the traffic in UDP).

Yes.

> This patch is included in SuperFreeS/WAN if I am correct.

Yes.

> Nothing needs to be done on the NAT firewall?

Yes.

> Do I need any special configuration on the FreeS/WAN gateways or client?
> Special stuff in the ipsec.conf or something?

Do you need help?X

Yes:

On the gateway you need to add the following in the respective sections:

config setup

	nat_traversal=yes
	virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,%v4:192.168.0.0/16,%v4
conn roadwarrior
	rightsubnet=vhost:%no,%priv
	

On client:

config setup

        nat_traversal=yes

Good luck :)

Paul
> The Linux VPN Masquerade HOWTO isn't very helpfull... It tells me to
> open all kind of ports on "the firewall" (ans I assume they mean the NAT
> firewall).
>
> Regards,
> Jeroen
>
>

-- 
God devised pigeons as a means of punishment for man. Probably after
the destruction of Sodom and Gomorrha he wanted to make sure that people
would never again feel comfortable enough in a city to repeat the sins
committed there, and he created the pigeons as a means to make the city
dwellers' lives more miserable, as a constant reminder of their past sins.

_______________________________________________
Users mailing list
Users@lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
Received on Wed Feb 26 11:49:59 2003
Do you need more help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:00:23 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library