cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
445
Views
0
Helpful
1
Replies

VPN communication issues

brwong6372
Level 1
Level 1

Able to establish VPN remote access tunnel between 3030 and 781 router but only see TX bytes. No RX bytes. from behind the 781, can ping the host behind the 3030 concentrator. But TX bytes do not update. Please advise. Thanks.

1 Reply 1

owillins
Level 6
Level 6

To pass IPSec traffic through a firewall, the following ports and protocols need to be opened.

1. UDP port 500 (isakmp)

2. Protocol ESP (protocol 50)

3. Sometimes protocol AH needs to be opened

So, for the first 2 an example in terms of ACLs will be:

access-list 101 permit udp 500

access-list 101 permit esp