×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.
Jon Marshall Mon, 07/23/2007 - 04:29
User Badges:
  • Super Blue, 32500 points or more
  • Hall of Fame,

    Founding Member

  • Cisco Designated VIP,

    2017 LAN, WAN

Hi


If you mean terminating on a firewall you don't have to open any ports as the firewall will allow IPSEC connections.


If you mean through a firewall


UDP 500 isakmp

IP 50 ESP

IP 51 AH ( note this is generally not needed)


If you need NAT-T then udp 4500

if you need IPSEC over TCP port 10000


HTH



Jon

Actions

This Discussion