On Thu, 17 Oct 2019 23:37:50 +0200 John Crisp <[email protected]> wrote:
> I am trying to help some friends get off Windows PPTP (!!!!) and first > stage was to L2TP/Ipsec. > Well, an extremely long shaggy dog story later. Windows. Every time I use it (which is rare) it just serves to remind me why I dumped it. I found a note here: https://github.com/StreisandEffect/streisand/issues/291 And then this: https://documentation.meraki.com/MX/Client_VPN/Troubleshooting_Client_VPN#Common_Connection_Issues "Modern Windows devices do not support L2TP/IPsec connections when the Windows computer or VPN server are located behind a NAT." What? Modern? Hey Ho. Seems Linux and Android etc are happy to do so. Add this key and reboot: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PolicyAgent RegValue: AssumeUDPEncapsulationContextOnSendRule Type: DWORD Value data: 2 Base: Decimal Instant karma..... Remember that only one device at a time can connect from a NAT'd Lan.
pgp6CkoDGvwT4.pgp
Description: OpenPGP digital signature
_______________________________________________ Swan mailing list [email protected] https://lists.libreswan.org/mailman/listinfo/swan
