cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
359
Views
5
Helpful
2
Replies

Moving the IKE port??

c-dudley
Level 1
Level 1

Hi all,

I was wondering if there was a way to change the IKE port on a 3000 series concentrator to get it off of udp500.

Thanks,

Chris

2 Replies 2

engel
Level 2
Level 2

I don`t think it is possible. AFAIK, the UDP port 500 is assigned by the IETF to the IKE protocol. I think, the OS coder uses UDP/500 to create the VPN3000`s OS. But if you get any information, please let me know.

Regards,

Engel

r-ta
Level 1
Level 1

If you use plain IPSec, or IPSec over udp, you will use udp 500.

If you use IPSec over TCP, you can use any tcp port (subject to your firewall filters). All required packets, including ike will be encapsulated in tcp. You may see some udp packets to 500 and 6xxxx, but they are not needed.

Roderick