Th best option is always look at the firewall logs and see what is being rejected.
I found this if it is of any help
The firewall must allow UDP port 10000. The Cisco client and server use a technique of encapsulating the IPSec packets in a UDP packet. The server and client are configured to use port 10000 for these encapsulated UDP packets.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.