Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

SecuRemote and Static NAT

Status
Not open for further replies.

SgtB

IS-IT--Management
Oct 3, 2002
447
US
We have a client that has a one to one address translation through his firewall. After installing SR on his machine he tried to connect to our VPN. He authenticated fine (log files showed his public IP address) but when he tried to ping destination server it didn't go through. Looking at the logs, the source IP is his private IP address. Obviously the firewall cannot route private IPs across the internet, so no connection.
Why this behaviour? Why would the source IP be his private IP?
According to phoneboy,
I need to enable UDP encapsulation on both ends for this to work. I'm still waiting for the client to call so we can test this.
In the meantime, I was wondering if anyone had this problem, and if so how they resolved it.

PS - creating a gateway-gateway VPN is not an option here.

Thanks!

I'll see your DMCA and raise you a First Amendment.
 
FYI -
Enabling support for UDP encapsulation on the firewall/vpn object, and setting 'Force UDP encapsulation' on the securemote client worked. With those options checked, the vpn connection worked flawlessly.
Well, now I gotta figure out why it worked...
[smile]

I'll see your DMCA and raise you a First Amendment.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top