Networking Forums

Networking Forums > Computer Networking > Linux Networking > Linux IPSec Nat-t Issue

Reply
Thread Tools Display Modes

Linux IPSec Nat-t Issue

 
 
Jay Kendall
Guest
Posts: n/a

 
      02-04-2007, 05:30 PM
Network Configuration:

Client (Private IP) -> Wireless Router (NAT-DHCP) -> I-Net -> Router
(STATIC IP)

Client: Windows XP Pro, using built in VPN system

Server:
Linux Kernel Version: 2.6.19
Iptables Version: 1.3.5
Raccoon ipsec-tools Version: 0.6.6
- product linked OpenSSL 0.9.8d
l2tpd version 0.69

Using NetKey and raccoon is compiled with NAT-T Support.

Raccoon ipsec negotiations 1/2 both go ok. Keys are built using
correct IP addresses as per NAT-T and setkey -DP show correct keys.

tcpdump shows inbound l2tp packets from client over ESP link, however
return packets from l2tpd does not pass though ESP link
(Unencrypted).

Secondly (Which I think is my own stupidity), if I block UDP port 1701
packets on my inbound WAN connection the firewall will not allow them
over ESP or the NAT-T port.

I've read that the 2.6.x kernel is broken for this setup, however all
these posts were from 2004 era and no bug reports exist on kernel.org
or netfilter bugzillas.

Any Help/Direction?

Thanks,
Jay Kendall

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
IPSec Linux - Longhorn one way. Lorenzo Vaina Linux Networking 9 07-13-2008 12:56 PM
IPSec Linux - Longhorn one way. Lorenzo Vaina Linux Networking 8 07-10-2008 01:10 PM
IPSec trough linux firewall Jan Rezab Linux Networking 1 10-19-2007 07:13 PM
Linux as NAT gateway to IPSEC server deja3-user@bitrealm.com Linux Networking 3 09-12-2005 04:38 AM
Linux kernel 2.4.x and IPSEC masquerade Olivier Roset Linux Networking 4 06-19-2005 04:26 PM



1 2 3 4 5 6 7 8 9 10 11