Connecting IPSec from Behind a gateway

Ivailo Tanusheff i.tanusheff at procreditbank.bg
Mon Jul 11 09:55:16 GMT 2005


As far as I know it's not possible to make IPSec when you use NAT, as IP 
address is used with crypto.
But you can make PPP or PPTP tunel between those two hosts and use IPSec 
between addresses in the tunel.

Ivailo Tanusheff
Senior System administrator
ProCredit Bank (Bulgaria) AD

tel. +359 2 921 7161
fax +359 2 921 7110
http://www.procreditbank.bg


Disclaimer: The information contained in this message is intended solely 
for the use of individual or entity to whom it is addressed and other 
authorized to receive it. It may contain confidential or legally 
privileged information. If you are not the intended recipient you are 
hereby notified that any disclosure, copying, distribution or taking any 
action in reliance on the contents of this message is strictly prohibited 
and may be unlawful. If you have received this communication in error, 
please notify us immediately by responding to this email and then delete 
it from your system. ProCredit Bank is neither liable for the proper and 
complete transmission of the information contained in this message nor for 
any delay in its receipt. 



FreeBSD MailingLists <freebsd.ml at gmail.com> 
Sent by: owner-freebsd-questions at freebsd.org
07/11/2005 11:06 AM
Please respond to
FreeBSD MailingLists <freebsd.ml at gmail.com>


To
questions <freebsd-questions at freebsd.org>
cc

Subject
Connecting IPSec from Behind a gateway






I am trying to connect 2 FreeBSD 5.4 boxes with an IPSec tunnel using
racoon.   The problem is the second box is behind a nat'd gateway. 
The gateway router is a commercial box with "IPSEC Passthrough"
enabled.

What do I need to do to get this to work?
Which IP (global or private) should I use when configure the connection?

TIA,
Tomoki Taniguchi
_______________________________________________
freebsd-questions at freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to 
"freebsd-questions-unsubscribe at freebsd.org"



More information about the freebsd-questions mailing list