cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
494
Views
0
Helpful
1
Replies

Cisco VPN thru a Router performing NAT and a MS ISA firewall

elstonpr
Level 1
Level 1

I'm having difficulties getting my Cisco VPN client software to connect to the Access Server. My network configuration is dsl> flowpoint router performing nat> MS ISA server performing firewall and nat.

Thru the ISA server management interface, I have made a protocol definition for udp 500 and udp 10000 for send. I have then made sure that my Access policy has been updated with these protocol definitions. Still no luck.

I have put an Ethereal sniffer in my dmz between the router and the ISA server. I capture the outgoing packets, however I do not capture any return packets from the Access Server (Cisco Pix, I believe. It is a client's site that we would like to use vpn for support purposes.)

Any suggestions on what to do next?

TIA,

Paul

1 Reply 1

paqiu
Level 1
Level 1

IPSEC over UDP or TCP is not supported in the PIX at current version 6.2.x

This is reason why it is not working.

Cisco VPN client can only do it with VPN 3000 concentrators at this moment, not router or PIX at current version).

Please check in the CCO for the future release PIX version supporting that feature.

Best Regards,