Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

NAT - IPSec over UDP not working

Hi,

I have a Cisco Systems, Inc./VPN 3000 Concentrator Version 3.5.2.Rel Feb 14 2002 12:10:21. I am trying enable NAT so my users can browse the internet while vpning into my network (this is a must have per our users) I have a private IP on my private inferface. I have IPSec over UDP enabled and NAT enabled with 192.168.1.1/24 map udp/tcp enabled but it's not working.

Am I missing anything?

Client: 3.5.1

Should I update my client and vpn concentrator?

Thanks

Jenn

8 REPLIES
New Member

Re: NAT - IPSec over UDP not working

Jenn,

I experienced the same problem.

Upgrading both VPN Conc and VPN client to V3.6 solves your issue.

KR

Kurt

New Member

Re: NAT - IPSec over UDP not working

Thank you. I will do that now.

New Member

Re: NAT - IPSec over UDP not working

Please let me know if some problems still occur.

Kurt

Cisco Employee

Re: NAT - IPSec over UDP not working

Hi Jenn,

Just a quick clarification, I guess you want to tunnel all traffic from the client to the VPN3000 and have the VPN3000 do the PAT and send the traffic to the internet.

If this is not the case, then Split Tunneling might be an option for you.

How are you assigning ip addresses to the remote users. If its a pool of ip addresses then make sure that you have added the pool of ip addresses in the interface rules under NAT.

I guess it might be more of a config issue than a code issue.

Regards,

Arul

New Member

Re: NAT - IPSec over UDP not working

I want to allow my vpn3015 to pat all traffic to the internet. I have ipsec over udp enabled and nat enabled. looks like nat is working (I see sessions) but can't get to the internet. i was going to try to update my concentrator/client (still waiting for my contract #.

I am assigning clients via address pool and nat has a rule for them.

you think it could be the versions?

Cisco Employee

Re: NAT - IPSec over UDP not working

Hi,

I will test this set up with 3.5.2 and let you know.

Regards,

Arul

Cisco Employee

Re: NAT - IPSec over UDP not working

Hi Jenn,

I tested this feature with 3.5.2 and it works. Anyways, you are better off going to the latest code. Let me know how the testing goes with the latest code.

Regards,

Arul

Cisco Employee

Re: NAT - IPSec over UDP not working

You need to add UDP/TCP filter rules to the public filter also.

Nelson

179
Views
0
Helpful
8
Replies