[nycbug-talk] Connecting a MacOS X client to an isakmpd VPN ...

Miles Nordin carton at Ivy.NET
Fri May 4 10:30:06 EDT 2007


>>>>> "bas" == Brian A Seklecki <lavalamp at spiritual-machines.org> writes:

   bas> racoon(8) and ipsec-tools support NAT-T; it's in the 0.7x
   bas> code.  --enable--natt i believe is the compile-time flag.  UDP
   bas> is definately supported; haven't tried TCP yet.

but kernel support is required, too.  and there are a disgustingly
stupid number of variations on something so simple as NAT-T so that
stacks often don't interoperate.  so I was wondering with what client
and with which BSD.

the ``works, but only for one road warrior behind a NAT'' problem
David mentioned used to be common, too.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 304 bytes
Desc: not available
URL: <http://lists.nycbug.org/pipermail/talk/attachments/20070504/1a846b14/attachment.bin>


More information about the talk mailing list