As long as the clients are using UDP encapsulation it should work fine. We
have joint venture employees on our internal network (behind hide NAT)
connecting back to their company via IPSEC all the time and we didn't do
anything special except allow IPSEC traffic outbound. We're running NG FP3
HF2 HFA313.

Ray

From: "Moon, Curtis" <[EMAIL PROTECTED]>
Reply-To: Mailing list for discussion of Firewall-1
<[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: [FW-1] VPN through NG FP3 HF2
Date: Wed, 10 Dec 2003 10:34:28 -0600

We are using NG FP3 HF2 on windows 2000 server.  We have about 15 internal
work stations that need to use ipsec client software to vpn out through our
firewall and connect to external vpn server.  I was wondering how people
handle this problem.  I am not talking about FW to FW vpn tunnels or using
secure client or secure remote.  I am talking about internal
workstations(NAT
hiding) using vendor software like Cisco pix or some special ipsec
compatible
software to connect out through the firewall to the external vpn.  If this
is
not possible, then does anyone have a suggestion on how to handle this.

Thank you,
Curtis Moon

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

_________________________________________________________________ Cell phone �switch� rules are taking effect � find out more here. http://special.msn.com/msnbc/consumeradvocate.armx

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to