Security Basics mailing list archives

Re: VPN problems


From: "Anil Saini" <ansaini567 () hotmail com>
Date: Sat, 09 Jun 2007 10:02:35 -0700

if the device is nat-t aware nating shouldn't be any problem for ipsec vpn. Check with customer support if ZyWALL supports nat-t, window xp native ipsec client supports NAT-T .
Anil


From: Kim Guldberg <kim () bufferzone dk>
Reply-To: kim () bufferzone dk
To: Diarmaid McManus <diarmaidmcmanus () gmail com>
CC: security-basics () securityfocus com
Subject: Re: VPN problems
Date: Fri, 08 Jun 2007 23:05:40 +0200

If you are using the IPSec protocol, you need to know that IPSec cannot handle NAT. You are using private IP addresses which will cause problems with IPSec.

Regards

Kim Guldberg
CPSA, GCFW

Diarmaid McManus skrev:
Dear list,

   I'm working for a company that recently purchased a ZyWALL 5 for a
client. There are problems setting up a VPN, however, o the internal
network.

   We are attempting to set up the ZyWALL to test the VPNs
compatibility with the Windows VPN client inbuilt with XP Pro. We have
it set up as follows(apologies if there's a lack of clarity...):

--------
192.168.1.5 -> ZyWall WAN port(.1.1) -> ZyWall LAN port(.10.223) ->
network -> 192.168.10.222
--------

   192.168.10.222 is the client we are attempting to connect from, to
add .1.5 to the virtual network. I have tried various configuration
settings, both on .10.222 and the ZyWALL, but to no avail. I have read
and re-read the instructions for adding a VPN and it turns out the
same no matter what values I add.

   Can anyone, from the sparse information provided, tell me anything
I may be doing wrong? With regards to ports etc. Is the Windows VPN
client compatible with ZyWALL? Are there any other free clients
compatible?

   Much thanks in advance,
~Diarmaid McManus



_________________________________________________________________
Need a break? Find your escape route with Live Search Maps. http://maps.live.com/default.aspx?ss=Restaurants~Hotels~Amusement%20Park&cp=33.832922~-117.915659&style=r&lvl=13&tilt=-90&dir=0&alt=-1000&scene=1118863&encType=1&FORM=MGAC01


Current thread: