cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
553
Views
0
Helpful
1
Replies

compatibility problem between fixup protocol esp-ike and ISAKMP

yi-chen
Level 1
Level 1

1. need to establish lan to lan vpn tunnel between two pix firewalls

2. need to allow inside vpn client go through the pix firewall to access other sites. and the firewall has only one ip address and do pat for inside clients

3. "fixup protocol esp-ike" and "isakmp enable outside" can't coexist on pix

is there any way to solve the problem? thks a lot

1 Reply 1

mostiguy
Level 6
Level 6

re #2 - if those vpn devices support nat traversal, you should be able to live without fixup protocol esp-ike. If they do not, I do not think there is any workaround for you