ipsec phase 2 with public IP as local network (200$ bounty for solution)
-
I have a VPN predefined by a manufacturer.
In the second phase, one of the virtual IPs must be used as the local network and all traffic must be sent to an external address subnet, which is also a remote network in the second phase.
All LAN traffic must be masked with the local virtual IP outgoing via NatExample:
WAN is a /29 subnet
ip 18x.x.x.10/29
Virtual ip 18x.x.x.11/32ipsec Tunnel:
local network 18.x.x.11/32
remote network: 20x.x.x/23Tunnel goes up ... Ping test from 18x.x.x.11/32 to 20x.x.y/23 works!
but lan-subnet traffic goes never via ipsectunnel to 20x.x.x/23any help is welcome
-
@Drew4614
In your phase 2 you have to state:
local network: LAN network
BINAT: address > 18.x.x.11
remote network: 20x.x.x/23 -
Thanks solved.. but i solved the problem myself .. but you are the winner.. do you have an btc or monero wallet