eumh....it's OK it's working NOW.I checked the log of the FW-1. I t was bloking packet.I made a mistake in my rule Concentrator -> CLIENT, i was using the Public address not the Private in the ruleand the Proto 50 was blocked (stupid mistake).Thanks...
euhm...sorry but i made a mistake....Please apologize.In fact it doesn't work... i thought http was working, but in fact itwas in my browser cache (from the test without NAT)...I was using "shift" but it seems it doesn't work under IE.So I'm still lo...
It seems i have the same problem between a Cisco VPN client 3.1/ VPN Concentrator 3005 / FW-1 4.1The VPN is behind the FW-1 with a NAT static (1/1)...and for the test purpose all traffic between theVPN and client is allowed (NO BLOCKING or DROPING ...