On Sat, Feb 16, 2008 at 04:26:19PM -0800, Mike Marion wrote:
> IIRC in tcp mode there's some part of the key exchange (TKIP?) that
> wants to connect back.  Assuming you're connecting to work, try
> changing your profile file and make sure that there's a line something
> like this in it:
> NAT Traversal Mode cisco-udp
> The NAT mode and udp mix will allow it to work.  Or should anyway.

Thanks.  That explains a lot.   I think my Ubuntu 6.06 has an older
vpnc that does things differently....

The only switch related to NAT I see is this..

  --disable-natt
  Disable NAT Traversal
      disable use of NAT-T

That would seem to imply if I didn't do --disable-natt that NAT traversal
is on by default no?

I can't add your "NAT Traversal Mode cisco-udp" so is there anything
else I can try w/o upgrading vpnc?

Chris


-- 
[email protected]
http://www.kernel-panic.org/cgi-bin/mailman/listinfo/kplug-list

Reply via email to