RE: Cisco IOS VPN and Firewall

From: Justin Menga (Justin.Menga@xxxxxxxxxxxxxxxxxx)
Date: Mon Nov 06 2000 - 16:20:55 GMT-3


   
Ensure you are not using NAT - if you need to use NAT, you must not include
the AH in the IPSec Negotiation (as it will detect the packet has been
tampered with).

Regards,

Justin Menga MCSE+I CCNP CCSE ASE
WAN Specialist
Computerland New Zealand
PO Box 3631, Auckland
DDI: (+64) 9 360 4864 Mobile: (+64) 25 349 599
mailto: justin.menga@computerland.co.nz

-----Original Message-----
From: Horvath, Russell [mailto:Russell.Horvath@viatel.com]
Sent: Tuesday, 7 November 2000 1:09 a.m.
To: group study
Subject: Cisco IOS VPN and Firewall

Anyone,
                I am trying to get IPSEC running through a PIX firewall. The
situ is:

1. 1750 IPSEC configured
2. FIREWALL NAT
3. Client PC

I have got IPSEC running OK between a PC and the 1750 without running it
through the firewall so I know my configs are OK.

However when I stick the PIX in between it fails. I have configured the PIX
with a conduit for the PC. Is there anything else it should have?

Does anyone know if you can run IPSEC through a PIX Firewall. I don't want
to terminate on the actual PIX but actually run through it.

Any takers......



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:25:42 GMT-3