[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: What is the latest status of NATD and IPsec interaction



dkwok@iware.com.au wrote:

> Just wonder whether NATd and IPsec can co-exist.
>
> wireless machine A ----------IPsec gateway---------------internet
> ip 192.168.1.5        int ip 192.168.1.1
>                                ext ip 202.44.190.109
>
> The task is to protect wireless machine A 's traffice both to and from 
> 192.168.1.5 to inernet and from 192.168.1.5 to 192.168.1.0/255.255.255.0
>
> The trafffic within the 192.168.1.0 subnet will not need nat and it 
> would work fine.
>
> However if there is no co-ordination between natd and ipsec, mahcine 5 
> will not be able to see the internet.
>
> Any idea?

These are a few sites with information about replacing wep with ipsec.

http://myhome.spu.edu/cdietlein/ipsec/
http://www.allard.nu/openbsd/

Use tunnel mode. What OS are you using for the client?