Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Is this possible

Status
Not open for further replies.

mrn

MIS
Joined
Apr 27, 2001
Messages
3,993
Location
GB
We have an external client that won't allow us to have a tunnel between our two companies. But they will allow us to access their network via the cisco vpn client. At present we have to use a machine in our DMZ to connect to them.

How would I go about allowing access via our internal network?



Mike

"A foolproof method for sculpting an elephant: first, get a huge block of marble, then you chip away everything that doesn't look like an elephant."

 
Without having more information, install the VPN client on any machine that needs VPN access to this remote site.

Chris.

**********************
Chris A.C, CCNA, CCSA
**********************
 
I assume you want to know the ports that the Cisco VPN Client uses so you can enable these on your Firewall?

If so:

UDP 500 outbound and inbound
UDP 4500 outbound and inbound
UDP 10000 outbound and inbound

I have this configured on Microsoft ISA and my Cisco VPN client works fine through NAT etc with the above ports allowed through the firewall. ISA actually looks for the initial outbound connection on each port before allowing the subsequent replies through (Direction: Send Receive in ISA speak).

HTH

Andy
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top