[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: [FW1] Secure Remote from behind NATing Router?
4.1 SP2 automagically recognizes udp encapsulated IPSEC packets due to the value of the source port in the IKE header; the firewall accepts the udp encapsulated packets on port 2746. You do have to make sure you are using securemote build 4165 for winnt/9x and RC2 for win2k. The firewall only needs further manual configuration when you wish to force udp encapsulation of all securemote connections. -Warren. -----Original Message----- From: Jeff Hochberg [mailto:[email protected]] Sent: Monday, October 02, 2000 5:32 PM To: 'Tom Sevy' Subject: RE: [FW1] Secure Remote from behind NATing Router? First of all you need to be running 4.1 SP2 and SecuRemote 4.1 bld 4165 in order to SR from behind a NAT device. Read the release notes for 4.1 SP2 carefully and they'll describe what needs to be done in order to enable the IPSEC UDP Encapsulation on the firewall. -Jeff -----Original Message----- From: [email protected] [mailto:[email protected]]On Behalf Of Tom Sevy Sent: Monday, October 02, 2000 2:33 PM To: Check Point FW List (E-mail) Subject: [FW1] Secure Remote from behind NATing Router? Does anything have to be set in the Firewall(s) to accept SR connections from clients behind a NATting device? CheckPoint FW-1 Ver 4.1 SP1 on Nokia IP440 x 2 Secure Remote W2K RC2 client, behind Cisco 802 (IDSL Router) ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|