iptables for IPSec (Cisco VPN) - where can I find a sample configuration?

This is a discussion on iptables for IPSec (Cisco VPN) - where can I find a sample configuration? within the Linux Networking forums, part of the Linux Forums category; I have been unsuccessful in finding an iptables configuration that allows my Windows 2000 workstation to establish a VPN connection ...


Go Back   Usenet Forums > Linux Forums > Linux Networking

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 09-24-2003
arabub
 
Posts: n/a
Default iptables for IPSec (Cisco VPN) - where can I find a sample configuration?

I have been unsuccessful in finding an iptables configuration that
allows my Windows 2000 workstation to establish a VPN connection
through my Linux firewall.

Someone please share his/her working configuration for iptables with
me. I'd appreciate that very much!


My setup is:
Linux firewall (RedHat 7.2) with iptables, connecting over ADSL
The Windows workstation is running Cisco's VPN
I have tried many different ways to get this to work, including
allowing udp and ip 50 traffic. However I fail to ever get beyond the
first isakamp handshake. When doing a tcpdump on ppp0 while attempting
a connection, I get nothing more than the following before the VPN
client gives up:
# tcpdump -n -t -i ppp0
<fw_outside_IP>.isakmp > <VPN_gw_IP>.isakmp: isakmp: phase 1 I agg:
[|sa]
<fw_outside_IP>.isakmp > <VPN_gw_IP>.isakmp: isakmp: phase 1 I agg:
[|sa]
<fw_outside_IP>.isakmp > <VPN_gw_IP>.isakmp: isakmp: phase 1 I agg:
[|sa]
where
"fw" stands for the Linux firewall, and
"gw" stands for the gateway on the other end (corporate Cisco
concentrator).


Thanks a lot.
--Ulf
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 01:05 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0