> Checkpoint recommends that we should use IKE over tcp and > udp encapsulation in secureremote client setup for initiating VPN > connections from behind any NAT device like cable USers and any users which > comes through a nat device.JUSt wanted to know why it is necessary to do > that. > > What difference does it make if the connection is initiated using udp port > 500. IKE over TCP prevents problems with large UDP packets and fragmentation when large CRL's are being sent.
-Don ================================================= To set vacation, Out Of Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
