cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
380
Views
0
Helpful
1
Replies

IKE, IPSec negotiation

gsebk
Level 1
Level 1

Hi all,

My question is whether during the IKE and IPSec initialization (phase one and two) other than UDP 500 (ISAKMP), IP 50 (IPSec ESP) and IP 51 (IPSec AH) ports are in use. It seems that if in access-list only these ports are permitted as incoming traffic and nothing else the peers don't negotiate anything.

Bye!

Gabor

1 Reply 1

hucuncu
Level 1
Level 1

Hi Gabor,

Protocol 17 should also be permitted.

"IPSec uses IP protocols 50 and 51, and IKE traffic passes on protocol 17, port 500 (UDP 500). Make sure these are permitted appropriately. "

Have a nice day,

Onur