03-06-2009 01:20 AM
hello
I'm plaining to implement a Remote VPN architecture using Certificates. I need a list of ports to be opened in the Firewall to permit the communication between the VPN Client and the VPN Server (ASA).
I found this list:
UDP 500
UDP 4500
UDP 10000.
is there any other port?
Sincerely
03-06-2009 01:40 AM
Hi,
The list should be
UDP 500
UDP 4500
TCP 10000
ESP (IP protocol 50)
Regards
03-07-2009 02:42 PM
Hi,
In all cases you will need to open udp/500, however,
If you are using NAT-T, then you open UDP/4500 and no need for esp
and/or
if you are using IPSec over tcp 10000, then you open TCP/10000 (not udp/10000), and no need for esp
otherwise you will open only udp/500 and esp without any other protocol
please rate if this is helpful!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide