02-24-2006 08:04 AM - edited 02-21-2020 02:16 PM
Anyone got problems running R56 Securemote client behind an IOS router running CBAC firefall features?
I have a client running unreliable behind it.
03-02-2006 07:42 AM
What CBAC features have you enabled on the IOS router? What kind of problems do you encounter?
03-06-2006 01:19 AM
It appear the client R56 remain "up" but data stops flowing. I have CBACB on inside interface "in" with TCP, UDP, ISAKMP and most INSPECTs set.
I have found interestingly that this client uses a fixed source port and also 2746 for UDP encap and not NAT-T standard 4500 UDP.
I have run a later client R60 over a PIX and it works well.
Cisco tell me the fixed source port used to cause problems in their client and they changed it. I also wonder why Checkpoint have changed the encapsulation UDP port to 4500???
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide