<br><font size=2 face="sans-serif">Thanks Matthew,</font>
<br>
<br><font size=2 face="sans-serif">So is what protocol is NAT-T?</font>
<br>
<br><font size=2 face="sans-serif">Pardon my ig.</font>
<br>
<br><font size=2 face="sans-serif">BTW, got my firewall people to
open UDP ports 4500 and 10000 and my shrew vpn client works now. Thanks
for the tip.</font>
<br>
<br><font size=1 face="Courier New">
,-.
_.---._ </font>
<br><font size=1 face="Courier New">
| `\.__.-''
`. </font>
<br><font size=1 face="Courier New">
\ _
_ ,. \ </font>
<br><font size=1 face="Courier New"> ,+++=._________________)_||______|_|_||
|</font>
<br><font size=1 face="Courier New">(_.ooo.===================||======|=|=||
|</font>
<br><font size=1 face="Courier New"> ~~'
| ~' `~' o
o / </font>
<br><font size=1 face="Courier New">
\ /~`\
o o / </font>
<br><font size=1 face="Courier New">
`~' `-.____.-'
</font><font size=2 face="sans-serif"><br>
</font>
<br>
<br>
<br>
<table width=100%>
<tr valign=top>
<td><font size=1 color=#5f5f5f face="sans-serif">From:</font>
<td><font size=1 face="sans-serif">Matthew Grooms <mgrooms@shrew.net></font>
<tr valign=top>
<td><font size=1 color=#5f5f5f face="sans-serif">To:</font>
<td><font size=1 face="sans-serif">Robert L Sowders <rsowders@usgs.gov></font>
<tr>
<td valign=top><font size=1 color=#5f5f5f face="sans-serif">Cc:</font>
<td><font size=1 face="sans-serif">vpn-help@lists.shrew.net</font>
<tr valign=top>
<td><font size=1 color=#5f5f5f face="sans-serif">Date:</font>
<td><font size=1 face="sans-serif">02/18/2010 08:11 PM</font>
<tr valign=top>
<td><font size=1 color=#5f5f5f face="sans-serif">Subject:</font>
<td><font size=1 face="sans-serif">Re: [vpn-help] All IPSec SA proposals
found unacceptable!</font></table>
<br>
<hr noshade>
<br>
<br>
<br><tt><font size=2>On 2/11/2010 2:40 PM, Robert L Sowders wrote:<br>
><br>
> Do any of the Shrew clients, beta or alpha support IPSEC over TCP?<br>
><br>
> I found out my Cisco 3000 is setup for it. Might be why I'm getting<br>
> these failures at phase 2.<br>
><br>
<br>
Nope. Cisco UDP and NAT-T are supported but not IPsec over TCP.<br>
<br>
-Matthew<br>
</font></tt>
<br>
<br>