Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: Roger on January 03, 2003, 06:28:55 PM

Title: FreeSwan interfere with Cisco NAT traversal??
Post by: Roger on January 03, 2003, 06:28:55 PM
Hello,
I have the following:
Windows 98 client w/Cisco VPN client on local LAN
e-smith 5.6b7gateway + server connected to Internet with dynamic IP.

I want Windows client to access remote VPN server through the Internet. Using a dial up connection to the internet everything works fine. Also in a different location with the Windows machine connected through a standalone firewall/NAT the connection also works but "transparent tunneling" on the VPN client needs to be turned off.

I have tried all possible settings on the VPN client with no success. Tcpdump indicates that packets are sent and received (UDP:500) between the client and VPN server but after 8 packets are exchanged things stop. The VPN client reports that a secure connection cannot be established.

My question (although any comments or suggestions are welcome) is about FreeSwan. I am not using it but I notice that it is now part of sme 5.6. Also there appear to be some comments on the net about problems with FreeSwan interfereing with NAT Traversal. Eventhough FreeSwan is not enabled is it possible that the installation is causing problems because the NAT is now IPSec aware and somehow interfering? Thoughts?
Thanks,
Roger.