Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Connect to Remote VPN Server with Cisco VPN Client 3.1

Status
Not open for further replies.

chariot

IS-IT--Management
Jan 28, 2002
2
IN
Hi
We are running a FreeBSD 4.4-RELEASE as our Gateway and IPFilter 3.4.20 with IPNAT on this Gateway.
I want to enable some of the users in our Private local network to connect to a remote VPN Server. The users are running on WindowsNT workstation 4.0 and Cisco VPN Client.

I have set my IPFilter rules to pass all. But I am not able to connect thro' VPN Client.
Any suggestions on this

Thanks

 
I had trouble myself trying to run Cisco's VPN Client software from a machine whose IP was being NATed.
As soon as I tried it on a machine not using NAT it worked no problem. I would try that first and then you can determine whether the problem is with your VPN configuration or the NAT. Niall
 
Your problem is definitely NAT related. Despite passing all incoming in your filter rule if the VPN protocol is being blocked by NAT then the filters are irrelevant. I believe Cisco uses IPSec for the VPN protocol. Therefore you would need to have IPSec pass through capability on your device running NAT.
 
I have set IPFilter rules to pass in and out all and
my IPNAT Rules are as follows

map fxp1 192.168.1.0/24 -> w.x.y.z/32 portmap tcp/udp 1025:65000
map fxp1 192.168.1.0/24 -> w.x.y.z/32 portmap tcp/udp auto
map fxp1 192.168.1.0/24 -> w.x.y.z/32 proxy port 500 ipsec/udp
map fxp1 192.168.1.0/24 -> w.x.y.z/32

But Still I am not able to connect to remote Cisco VPN Server with a Cisco VPN Client 3.1

Thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top