There should be an option to select IPsec/UDP. UDP wrapped around Ipsec
is essentially nat traversal.
HTH
Rick.

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Matthew
Schneider
Sent: Monday, November 22, 2004 6:40 PM
To: 'Charles Steinkuehler'
Cc: [EMAIL PROTECTED]
Subject: RE: [leaf-user] Cisco VPN client and FreeS/WAN Site-to-site VPN

I can only have 1 outside address. The connection will be initiated from
inside. How do I go about setting up nat-traversal?

Thanks,
Matt

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Charles
Steinkuehler
Sent: Monday, November 22, 2004 1:55 PM
To: matthew
Cc: [EMAIL PROTECTED]
Subject: Re: [leaf-user] Cisco VPN client and FreeS/WAN Site-to-site VPN

matthew wrote:
> Hi,
> 
> I am currently have 2 sites (my house and a friend's) with a Leaf 
> 2.2.19-3 Firewall at each site. I am using FreeS/Wan to create a site-
> to-site vpn between the two firewalls. This setup has been working
fine 
> for a while. I have run into a situation where I need to use the Cisco

> VPN client to make a VPN connection to a Pix firewall at work from a 
> computer on the inside of one of the firewalls. Currently, the 
> connection to the Pix fails behind the firewall. Is it possible to
make 
> the connection to the pix and still keep the site-to-site VPN. If so, 
> what configurations changes would I need to make on the firewall?

You might be able to get this to work if you nat-traversal for the 
connection to the Pix, and initiate the connection from inside your leaf

firewall, or if you have more than one external IP.

-- 
Charles Steinkuehler
[EMAIL PROTECTED]


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://productguide.itmanagersjournal.com/
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to