FreeBSD Firewall + NAT Traversal + IPsec

Bjoern A. Zeeb bzeeb-lists at lists.zabbadoz.net
Thu Apr 7 10:35:10 PDT 2005


On Fri, 8 Apr 2005, John Mok wrote:

Hi,

> Thank you for your quick reply.
>
> I would like to know more on the issue. To my understanding, since the
> source address of the IP packet from the client would be modified on the
> NAT, normally it would fail AH check on the IPsec VPN gateway, or the
> FreeBSD NAT has built-in compliance with RFC3947?

NAT-T is not supported by FreeBSD.

-- 
Bjoern A. Zeeb				bzeeb at Zabbadoz dot NeT


More information about the freebsd-net mailing list