[vpn-help] All IPSec SA proposals found unacceptable!

Robert L Sowders rsowders at usgs.gov
Fri Feb 19 01:00:12 CST 2010


Thanks Matthew,

So is what protocol is NAT-T?

Pardon my ig.

BTW, got my firewall  people to open UDP ports 4500 and 10000 and my shrew 
vpn client works now.  Thanks for the tip.

                       ,-.        _.---._ 
                      |  `\.__.-''       `. 
                       \  _        _  ,.   \ 
 ,+++=._________________)_||______|_|_||    |
(_.ooo.===================||======|=|=||    |
   ~~'                 |  ~'      `~' o o  / 
                        \   /~`\     o o  / 
                         `~'    `-.____.-' 




From:
Matthew Grooms <mgrooms at shrew.net>
To:
Robert L Sowders <rsowders at usgs.gov>
Cc:
vpn-help at lists.shrew.net
Date:
02/18/2010 08:11 PM
Subject:
Re: [vpn-help]  All IPSec SA proposals found unacceptable!



On 2/11/2010 2:40 PM, Robert L Sowders wrote:
>
> Do any of the Shrew clients, beta or alpha support IPSEC over TCP?
>
> I found out my Cisco 3000 is setup for it. Might be why I'm getting
> these failures at phase 2.
>

Nope. Cisco UDP and NAT-T are supported but not IPsec over TCP.

-Matthew


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20100218/b1852e58/attachment-0001.html>


More information about the vpn-help mailing list