in an NAT environement you need to encapsulete the VPN traffic into UDP or TCP (because ESP has no port#, has protocolnumber 50).Otherwise VPN traffic after IKE will be dropped.
Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=65276&t=65239 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]