cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1216
Views
0
Helpful
1
Replies

IPSec through a router with NAT

pgasol
Level 1
Level 1

Hello, I would like to make a VPN with IPSec between a PC with a client VPN (like the easy VPN client ) and a firewall (like a PIX).

Like both devices are separate in different networks that have a router with NAT, I would like to know if this will work now or I will have to enable the protocolos ESP, AH and ISAKMP in the interfaces of the routers that have NAT.

Thanks in advance

1 Reply 1

mnaveen
Level 1
Level 1

Hi,

If you want establish an IPSec tunnel through a NAT device, then use the NAT-T (NAT-Traversal) to circumvent the packet integrity issue imposed by AH/ESP.

Check out the following link.

http://www.cisco.com/en/US/products/sw/iosswrel/ps1839/products_feature_guide09186a0080110bca.html

http://www.cisco.com/en/US/products/sw/secursw/ps2308/products_administration_guide09186a00800bd98c.html

Thanks,

Naveen.

Review Cisco Networking for a $25 gift card