cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
52355
Views
11
Helpful
1
Replies

How to enable NAT Traversal on IOS router/firewall?

jasonhumes
Level 1
Level 1

I need to enable NAT Traversal on my IOS firewall so that my vpn clients who are trying to connect from behind a pix can connect and communicate properly. How can I do this? On a pix its 'isakmp nat-traversal'...but i cant figure it out on the router. Please help. Thanks.

1 Reply 1

wyatts
Level 1
Level 1

http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a0080455c72.html

Configuring NAT Traversal

NAT Traversal is a feature that is auto detected by VPN devices. There are no configuration steps for a router running Cisco IOS Release 12.2(13)T. If both VPN devices are NAT-T capable, NAT Traversal is auto detected and auto negotiated.

Disabling NAT Traversal

You may wish to disable NAT traversal if you already know that your network uses IPSec-awareness NAT (spi-matching scheme). To disable NAT traversal, use the following commands:

SUMMARY STEPS:

1. enable

2. configure terminal

3. no crypto ipsec nat-transparency udp-encapsulation