cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
787
Views
0
Helpful
2
Replies

IPSEC over TCP/50,000 on PIX 5xx...

abatson
Level 1
Level 1

I have a 3000-series concentrator where I already have IPSEC set up on port TCP/50,000, but I wonder if this is possible on a PIX 501 running 6.3(3).

I ask, because I want to be able to VPN into my PIX from broadband connections at hotels, who might not allow ESP (IP_Prot 50, 51) for instance. If I use a TCP port for the IPSEC, I'll likely overcome that.

2 Replies 2

aghaznavi
Level 5
Level 5

I think IPsec over TCP is supported only on the public interface of VPN Concentrators.

arbensy
Level 1
Level 1

Hi

That is not possible with IOS 6.x.

IOS version 6.x does not support IPsec over TCP.

PIX 501 does not support IOS version 7.x.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080645722.shtml

visit this link.

This document describes how to configure remote access VPN sessions between a PIX Firewall and VPN Hardware Clients. This sample configuration demonstrates a configuration for IPsec over TCP on any port. This feature is introduced in PIX version 7.x.