cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
550
Views
0
Helpful
1
Replies

VPN ports

cory-gray
Level 1
Level 1

What are the minimum ports that are needed to be open on a PIX outside interface in order for a remote Cisco VPN client to work properly?... i.e. isakmp, esp etc. Names and port numbers are greatly appreciated. Thanks

1 Reply 1

vasthorvak
Level 1
Level 1

Do you mean the pix as a vpn endpoint or allowing vpn through the pix?

If you mean to the pix then to allow ipsec to the outside interface issue the sysopt connection permit-ipsec which will bypass the pix ASA.

If you mean through the pix then you need to allow ESP protocol 50, AH protocol 51, and ISAKMP udp 500. Hope this helps.