Security Basics mailing list archives

Re: Nortel Contivity VPN and Firewalls


From: "Jiang Peng" <secplatform () hotmail com>
Date: Thu, 14 Aug 2003 18:05:42 +0800

For a Cisco pix firewall, what you need to do is:
1. static NAT map for client PC
2. enable esp,  access-list listname permit esp host vpnserverip host
clientpublicip
3. enable udp port 500, access-list listname permit udp host vpnserverip
host clientpublicip eq 500

JP
----- Original Message ----- 
From: "Scott Davis" <scott () infosectraining org>
To: <Leonard.Ong () nokia com>; <security-basics () securityfocus com>
Sent: Thursday, August 14, 2003 1:33 AM
Subject: Re: Nortel Contivity VPN and Firewalls


I seem to recall that TCP port 57 was also needed, I am pretty sure this
was for the Nortel VPN client.



From: <Leonard.Ong () nokia com>
Date: 2003/08/12 Tue PM 11:27:43 EDT
To: <security-basics () securityfocus com>
Subject: Nortel Contivity VPN and Firewalls

Hello,

Anyone has setup firewall policy to allow Nortel Contivity VPN clients
through ? What would be the additional ports other than the standard IP
Protocol 50 and UDP 50

Thank you

Regards,
Leonard


--------------------------------------------------------------------------
-

--------------------------------------------------------------------------
--





--------------------------------------------------------------------------
-
--------------------------------------------------------------------------
--



---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: