cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
9231
Views
0
Helpful
4
Replies

UDP 500 and ESP

agoodwin
Level 1
Level 1

Hi,

Can anyone tell me a bit about ESP please? I can setup my router to allow through udp 500 but I assume I need a more specialised one to allow ESP - or does it just need other ports? A website would be good?

Apologies for possibly being a bit daft with this question

thanks for your time

Andy

1 Accepted Solution

Accepted Solutions

ywadhavk
Cisco Employee
Cisco Employee

Hi,

I guess you are asking about VPN tunnel. In that case,

ESP = port 50

AH = port 51

and

UDP port 500

These are the ports you require to open up. In addition, if IPSec over udp is used then UDP port 10000 needs to be opened.

As for ESP (Encapsulating Security Payload), please refer to RFC 2406

and more info on the below url;

http://www.cisco.com/en/US/partner/tech/tk583/tk372/technologies_tech_note09186a0080094203.shtml

Thanks,

yatin

View solution in original post

4 Replies 4

ywadhavk
Cisco Employee
Cisco Employee

Hi,

I guess you are asking about VPN tunnel. In that case,

ESP = port 50

AH = port 51

and

UDP port 500

These are the ports you require to open up. In addition, if IPSec over udp is used then UDP port 10000 needs to be opened.

As for ESP (Encapsulating Security Payload), please refer to RFC 2406

and more info on the below url;

http://www.cisco.com/en/US/partner/tech/tk583/tk372/technologies_tech_note09186a0080094203.shtml

Thanks,

yatin

Hi Yatin,

I feel ESP and AH are Protocols and 50 and 51 are Protocol numbers.

Thank you.

Murthy.

Murthy,

Ofcourse they are. I didn't think the '=' sign will be taken literally..

Yatin

Thats exactly what I needed - thanks for your help,

cheers

Andy