Could someone please explain to me what is NAT Traversal and how it would work behind a device(ADSL Modem) that is performing NAT. The Netscreen trusted side is also operating in NAT mode.
Native IPSEC doesn't work well with NAT. To get around this, NAT Traversal can be used. This allows for the IPSEC traffic to be encapsulated within an UDP header and traverse the NAT device and Firewall. Without this, IKE Phase 1 will fail.
Check to see that both the your Firewall and ADSL modem support IPSEC with UDP Encap. Most ADSL modems that I have come across run into issues, we simply roll out Linksys Devices to protect our remote users. All of the Linksys Products support IPSEC via UDP and they tend to be flawless. Not a Cisco or Linksys pusher either, I am just relaying some feedback to you. Hope this helps.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.