cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
633
Views
0
Helpful
2
Replies

IPSEC over TCP/50,000 on PIX 5xx...

abatson
Level 1
Level 1

I have a 3000-series concentrator where I already have IPSEC set up on port TCP/50,000, but I wonder if this is possible on a PIX 501 running 6.3(3).

I ask, because I want to be able to VPN into my PIX from broadband connections at hotels, who might not allow ESP (IP_Prot 50, 51) for instance. If I use a TCP port for the IPSEC, I'll likely overcome that.

2 Replies 2

aghaznavi
Level 5
Level 5

I think IPsec over TCP is supported only on the public interface of VPN Concentrators.

arbensy
Level 1
Level 1

Hi

That is not possible with IOS 6.x.

IOS version 6.x does not support IPsec over TCP.

PIX 501 does not support IOS version 7.x.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080645722.shtml

visit this link.

This document describes how to configure remote access VPN sessions between a PIX Firewall and VPN Hardware Clients. This sample configuration demonstrates a configuration for IPsec over TCP on any port. This feature is introduced in PIX version 7.x.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: