Hi All,

I have real IP address for DMZ. I am trying to connect to my Microsoft VPN
server through L2TP/IPsec. I have open ports UDP 500 (IKE ) and IP 50 for
the VPN traffic.  I have two rules for this traffic

Source          Destination             Service         Action          Log

Any                   VPNSERVER                 Port 500        Accept
Log
                                        Port 50

VPNSERVER       Any                     Port 500        Accept          Log
                                        Port 50


My log says that IKE is accepted but I get a server didn't response error
message and not able to connect. I think firewall is timing out the
connection. Microsoft required only these two ports for the connection. UDP
500 (IKE ) and IP 50

Any Thoughts on that. I would much appreciate your help.

Thanks,
Syed

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to