On Sun, Sep 09, 2012 at 01:26:00AM -0600, Dave Price wrote: > I have a firewall running ipchain/ipfwadm. I cannot seem to connect > 'out' thru this firewall with a masqueraded connection using IPSEC - I > have a laptop (win) that need to run a nortel vpn client - supposedly > NAT is no problem for this service, but i cannot connect. When i change > the laptop's IP address to bypass the frewall, I connect fine.
You need to open UDP port 500 on the firewall for the key exchange traffic. noah -- _______________________________________________________ | Web: http://web.morgul.net/~frodo/ | PGP Public Key: http://web.morgul.net/~frodo/mail.html
pgp39IaorLUem.pgp
Description: PGP signature