howto/IPsecWithPublicKeys/strongSwan5Example.md
... ...
@@ -116,4 +116,7 @@ In this example, we'll use the following settings:
116 116
rightprotoport=gre
117 117
# startup
118 118
auto=route
119
- keyingtries=%forever
... ...
\ No newline at end of file
0
+ keyingtries=%forever
1
+
2
+If your peer is using a Cisco router and is behind NAT, then you might need to add the following option:
3
+ rightid=NATIP
... ...
\ No newline at end of file