Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

VPN Client 3.x thru 2600 NAT to 3000 concentrator

Scenario: Using VPN Client 3.5.1 (B) behind a 2600 router doing NAT and IOS ver 12.2.(8)T4. Destination is a VPN 3000 concentrator. Client can authenticate and connect, but can't reach anything. Tried both no tunneling and udp tunneling... tcp tunneling isn't enabled on the 3000.

Any ideas why this won't work? Debugs reveal some packets from 3000 are being dropped, but not enough info to determine why...

1 REPLY
Cisco Employee

Re: VPN Client 3.x thru 2600 NAT to 3000 concentrator

Enabling IPSec thru udp (per group settings) and IPSec thru tcp (global settings), requires the settings to be turned on the concentrator. For udp

it has to be on the group, as part of mode config (make sure you tick mode config), for tcp it is a global config. Then you select the approriate encap on the client, see:

http://www.cisco.com/warp/customer/471/nat_trans.html

http://www.cisco.com/warp/customer/471/vpn3k_ipsec_tcp.html

175
Views
0
Helpful
1
Replies