[vpnc-devel] Problems going through NAT configured with ferm

Steinar Bang sb at dod.no
Tue Sep 11 21:18:52 CEST 2007


>>>>> Joerg Mayer <jmvpnc at loplof.de>:

> Just to be able to compare things: The initial packet is 1325 bytes
> in size on my system, small enough to easily fit into several
> tunnels before causing problems. Yours is similar, so ther doesn't
> seem to be much of a difference. In case you are using psk for
> authentication, please try the attached patch and let me know
> whether it helps. 

By PSK I suppose you mean "Pre Shared Key"...?  I'm using something
called a "group password" in the Cisco client, and my Windows Domain
password, and both are manually added on both sides, so I guess I
am...? 

I'll look into trying the attached patch.

> Or is it a later packet?

I don't know.  How can I find out?  According to wireshark, there is a
Key Exchange Payload of 128 bytes in the single ISAKMP package.

> And which authentication scheme are you using?

I don't know.  What alternatives do I have? (Ie. what do I look for in
config or whireshark sniffing results?)



More information about the vpnc-devel mailing list