Firewall Wizards mailing list archives

RE: VPN through DSL


From: "Litscher, Mark" <mcl () Polymer MacLean-Fogg com>
Date: Thu, 14 Mar 2002 08:03:56 -0600

Rob,

Your client is the same version and build as mine. Could you establish a
tunnel with your network and open the connections properties (double click
on the Nortel icon in the system tray) and check to see if 'IPSec Nat
Traversal' is enabled?

Thanks,

Mark Litscher

-----Original Message-----
From: rob.roberson () verizon com [mailto:rob.roberson () verizon com]
Sent: Thursday, March 14, 2002 6:43 AM
To: Litscher, Mark
Subject: RE: [fw-wiz] VPN through DSL



Mark,
The info in the program says it is version V04_10.68. It comes to me
prepackaged from my corp's IT group. It does say it is the Nortel Contivity
client. I don't know about the options for it, as it came prepacked. Is
there a config file or an .ini file I can send you?

(Embedded image moved to file: pic12865.pcx)

~Rob


|---------+------------------------------>
|         |           "Litscher, Mark"   |
|         |           <mcl@Polymer.MacLea|
|         |           n-Fogg.com>        |
|         |                              |
|         |           03/13/2002 05:51 PM|
|         |                              |
|---------+------------------------------>
 
---------------------------------------------------------------------------
-----------------------------------------------------|
  |
|
  |        To:      Rob R. Roberson/EMPL/NJ/Bell-Atl@VZNotes
|
  |        cc:
|
  |        Subject: RE: [fw-wiz] VPN through DSL
|
 
---------------------------------------------------------------------------
-----------------------------------------------------|




Afternoon,

I saw this message and had to ask, are you using the client for the Nortel
Contivity switch? (VPN Client v4.10d) If so, what settings are you using to
get through the NAT problem? I'm trying to use it through a OpenBSD ipf/pf
firewall on a cable modem at home and the only message I get from the
client
is that the switch is not responding.

Thanks,

Mark Litscher


-----Original Message-----
From: rob.roberson () verizon com [mailto:rob.roberson () verizon com]
Sent: Wednesday, March 13, 2002 12:45 PM
To: firewall-wizards () nfr com
Subject: RE: [fw-wiz] VPN through DSL


My company uses the same Nortel client. I run it behind a Linux/IPTables
packet filter utilizing NAT. It works great.

Most likely it is the DSL provider.

~Rob Roberson

---------------



On Wed, 13 Mar 2002, Peter Lukas wrote:

Sounds like your VPN software runs on your client machine and your DSL
router is running NAT. This will cause problems for most any VPN
connection. It is also possible that your provider is blocking certain
protocols required for VPN connections as Jeffrey points out.

Verify that your DSL router is running NAT and investigate options to
obtain static IP addresses for your client machines from your provider.
Short of that, you'll need to determine whether or not your VPN software
can be used behind a NATed connection.

Good Luck!

Peter Lukas
_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


Current thread: