Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Cisco 506 NAT IPSec

I was wondering if it was possible to have an IPSec tunnel originate within a local area network that sits behind a 506 with NAT'ing enabled. I have tried to use the following command to get this to work to no avail.

sysopt connection permit-ipsec command

The IPSec client that resides behind the firewall requires authentication header and I assume that is where my problem lies. Much thanks in advance.

1 REPLY
New Member

Re: Cisco 506 NAT IPSec

As long as the client is getting a real NAT address and not a PAT address you should be fine. Does your client software support NAT transparency mode like the one for the Cisco VPN concentrators?

79
Views
0
Helpful
1
Replies
CreatePlease to create content