[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW-1] Advice
Actually with udp encapsulation he should be able to use more than one, the client will handle the encapsulation and the NAT is irrelevant at that point. The IPSEC packet is inside a UDP packet and therefore they have different source ports. Also, I have heard of two users using the same IP address on the remote side also working at the same time... although I would do the same to avoid that one myself. Daniel Gaughan -----Original Message----- From: Greg Winkler [mailto:[email protected]] Sent: Thursday, December 13, 2001 3:33 PM To: [email protected] Subject: Re: [FW-1] Advice I use Netgear RP114 and Zone Alarm Pro. Works fine. Don't plan on using SR on both of you computers. You can only do one SR session behind a NAT device (like a Linksys or Netgear) at a time. You'll need a separate NAT device per PC and then you'll need multiple IP's from you ISP on the WAN side. Also, if you are doing IP NAT Pool at the gateway for your SR connections, you'll additionally need to ensure that you never overlap IP addresses among your potential SR PC's. Meaning user A behind his NAT device get's one IP address, and user B behind his NAT device CAN NEVER get the same IP address that user A might have received. What I had to do was manage the IP network ranges that were assigned to the DHCP servers on all my NetGear's, making cetain that the ranges did not overlap across the routers. ---------------------------------------------------------------------------------------- Greg Winkler Systems Manager, IT&S Huntsman Corporation Internet Mail: [email protected] Voice:Fax:Jose Titus <[email protected]> Sent by: Mailing list for discussion To: [email protected] of Firewall-1 cc: <[email protected] Subject: Re: [FW-1] Advice point.com> 12/13/01 11:35 AM Please respond to Mailing list for discussion of Firewall-1 I have used Linksys incorporated Zonealarm and it works great .. Hope this helps.. Jose Titus ----- Original Message ----- From: "Stephan Dubeau" <[email protected]> To: <[email protected]> Sent: Thursday, December 13, 2001 10:46 AM Subject: [FW-1] Advice HI all Need some advice on setting up home users for VPN'ing on office network. Office gateway: Win NT4 with FW-1/VPN-1 4.1. 3DES. Office local network: Win2k all around!!! Home user OS: Win2k Now what setup will it be best for Home PC to use or have? I got 2 home PC that will share broadband connection(cable). Of course both will have SecureRemote to access office network. Then, for sharing broadband Cable Internet connection, which product is best to use: NetGear or LinkSYS or somethingelse? Both will have ZONEAlarm firewall, but which version, the free one or the PRO version? I know by reading DOC on there respective web site, that NetGear and LinkSYS can be purchase with Firewall incorporated in the device, is that better then using ZONEAlarm alone? Thanks Best regards ****************************************** "I have often regretted my speech, never my silence." - Xenocrates (396-314 B.C.) ****************************************** Stephan Dubeau Dessinateur et Administrateur Windows 2000 Draftsman & Windows 2000 Administrator mailto:[email protected] (Affaire/Business) mailto:[email protected] (Amusement/Pleasure) ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= If you have any questions on how to change your subscription options, email Ron Alcatraz at: [email protected] ================================================= ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= If you have any questions on how to change your subscription options, email Ron Alcatraz at: [email protected] ================================================= ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= If you have any questions on how to change your subscription options, email Ron Alcatraz at: [email protected] =================================================
|