D&C Lug - Home Page
Devon & Cornwall Linux Users' Group

[ Date Index ][ Thread Index ]
[ <= Previous by date / thread ] [ Next by date / thread => ]

Re: [LUG] Problems VPNing with IPCop 1.3+patches?




If you are using ipsec then UDP500 is only used for IKE negtations afterwards 
the encrypted packets are ESP that is type 53 NOT UDP, NOT TCP but ESP. If 
you have NAT-T patches at both ends then you don't see ESP but UDP2500.

Regards

Robin



On Wednesday 10 November 2004 18:25, Grant Sewell wrote:
On Wed, 10 Nov 2004 18:07:34 +0000

Grant Sewell <dclug@xxxxxxxxxxxxxxxxxx> wrote:
b) Forward the port that is used for VPN
connection/handshakeing/tunnelling to the red interface on my IPCop box. 
This is what I would like to do.

Anyone know what port number I should be forwarding?

Damn it!

Would it be TCP+UDP 500, by any chance?  The "iptables -L" output didn't
give the port number - it gave the port name!  I really should check the
/etc/services file more often!

Cheers.

-- 

Robin Cornelius
---------------------------------------------------
robin@xxxxxxxxxxxxxxxxxxxxx
GPG Key ID: 0x729A79A23B7EE764
http://www.biglumber.com/x/web?qs=0x729A79A23B7EE764

Attachment: pgp00012.pgp
Description: PGP signature


Lynx friendly