[wellylug] DSE XH1151 router/firewall and VPN

Bill Christiansen bill.christiansen at gmail.com
Sat Dec 18 10:47:23 NZDT 2004


Thanks for help with this "off linux" topic, I updated the router's
firmware and found it is automatically supporting IPsec pass through
and NAT, without me needing to forward any ports in the virtual server
settings and with DMZ disabled. The trick is that I can only connect
to vpn once with out a reboot of the client laptop so if I disconnect
the vpn session I need to reboot the laptop before I can reconnect to
vpn. It didn't have this behaviour when I was using DMZ so I think you
are right about protocol 50 not being fully supported. My IT guy (from
AKL) is going to send me a less budget model firewall to try.


On Tue, 14 Dec 2004 09:44:52 +1300, Pete Black <pete at marchingcubes.com> wrote:
> Oops i meant protocol 50 here for IPSEC :) my bad
> 
> >  It is quite likely your network setup does not support protocol 47
> > connectivity and is getting past the connection negotiation phase, but
> > then dropping the actual traffic that appears using protocol 47.
> >
> 
> 
> --
> Wellington Linux Users Group Mailing List: wellylug at lists.wellylug.org.nz
> To Leave:  http://lists.wellylug.org.nz/mailman/listinfo/wellylug
>




More information about the wellylug mailing list