[strongSwan-dev] [Strongswan Dev] A small query on NAT-T support

SaRaVanAn saravanan.nagarajan87 at gmail.com
Mon Oct 8 12:45:32 CEST 2012


Hi Team,
    I am a newbie to Netkey IPSec Stack world.  I have some queries on
NAT-T implementation in Strongswan with respect to Netkey stack.

1)  I have opened a UDP socket of port 4500, in order to receive NAT-T
packets. But
I am receiving both IKE and ESP packets with UDP encapsulation to IKE user
space daemon, which results in loss
of UDP encapsulated ESP packets.

There is some way to filter the UDP encapsulated ESP packets from reaching
IKE user space daemon in Strongswan.

Could you please help me with the files or Functions in Strongswan, which
does this for my understanding? or
Could you please guide me with a way to achieve the same?

Thanks in Advance for your precious time.

Regards,
Saravanan N
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/dev/attachments/20121008/9ddfc21a/attachment.html>


More information about the Dev mailing list