10-15-2019 08:42 AM - edited 02-21-2020 09:35 AM
So if there is another FW in between 2 Fws and/or routers that have a IPSEC tunnel built between them, can a FW that sits between (transport device that passed the traffic to and from) see the interesting IP traffic (source IPs and destinations of interesting traffic, not just tunnel peer ip addresses)?
Solved! Go to Solution.
10-15-2019 08:58 AM
10-15-2019 01:24 PM
Just to add to what @Rob Ingram has posted, they might also see UDP/500, UDP/4500 will be seen if NAT traversal is configured (enabled by default) and there is a NAT device in the path between the VPN headends. Otherwise nothing within the VPN tunnel is seen by other devices in the path.
10-15-2019 08:58 AM
10-15-2019 01:24 PM
Just to add to what @Rob Ingram has posted, they might also see UDP/500, UDP/4500 will be seen if NAT traversal is configured (enabled by default) and there is a NAT device in the path between the VPN headends. Otherwise nothing within the VPN tunnel is seen by other devices in the path.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide