Security Basics mailing list archives

Re: VPN problems


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Mon, 11 Jun 2007 19:09:03 +0200

On 2007-06-09 Anil Saini wrote:
if the device is nat-t aware nating shouldn't be any problem for ipsec
vpn. Check with customer support if ZyWALL supports nat-t, window xp
native ipsec client supports NAT-T .

If your VPN uses IPSec's AH protocol it doesn't matter how NAT-T aware
your router is. AH is entirely incompatible with NAT and will not work
with NATed connections.

Regards
Ansgar Wiechers
-- 
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq


Current thread: