cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
378
Views
0
Helpful
2
Replies

Pix and Cisco VPN Client - PAT

dawsonpa
Level 1
Level 1

Hello,

Multiple clients are behind a PAT device which is a GPRS router.

Despite the fact that they have enabled 'transparent tunneling' using 'UDP encapsulation' - only one of them can connect successfully behind the device. I have already tried to force the DPD keepalives but that does not help.

Because all the rest of the users (not behind this device!) can connect to the pix at simultaneous occurances I cant see it being the pix firewall config. But what else can I do other that enable UDP encapsulation??? I think TCP encapsulation is only for the VPN concentrator.

2 Replies 2

engel
Level 2
Level 2

The VPN client is able to do IPSec over TCP also. Just enable the TCP encapsulation on the Concentrator. Navigate to Configuration | System | Tunneling Protocols | IPSec | NAT Transparency and check the "IPSec over TCP" box.

Let me know how it works.

Regards,

Engel

Sorry maybe I shouldn't have mentioned the concentrator. I am using a pix with this particular client (as my subject suggests:-).