The problem has to do with how the firewall deals with the incoming packets. The ip_masq_ipsec module tells the machine how to handle these packets. You will have the same problem with things like NetMeeting.
-----Original Message----- From: Mike Pelley [mailto:[EMAIL PROTECTED]] Sent: Wednesday, February 27, 2002 5:02 PM To: [EMAIL PROTECTED] Subject: RE: Anyone using Nortel Contivity behind an IP Tables firewall? I've found out how to do it - I needed to load the ip_masq_ipsec module. Part of me would think that since you're only connecting from inside to an outside destination (with full outside access allowed - no blocking in-to-out) that you wouldn't need that module. Anyway it does the trick! Thanks to all who reponded! Cheers, Mike -------------------------------------------------------- Mike Pelley "Non illegitimati carborundum" Owner & "Misc. Rambler" of Pelleys.com [EMAIL PROTECTED] - www.pelleys.com -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Matthew Galgoci Sent: Wednesday, February 27, 2002 3:17 PM To: [EMAIL PROTECTED] Subject: Re: Anyone using Nortel Contivity behind an IP Tables firewall? Does your client support tunneling ipsec over udp? You need this in order to be able to pass through nat. On Sat, Feb 23, 2002 at 12:58:10PM -0330, Mike Pelley wrote: > Folks, > > My employer uses the Nortel Contivity VPN Client for remote access > over DSL. I have an IP Tables firewall (using SmoothWall), but I > cannot connect through the firewall. I see UDP port 500 going out to > my employer's VPN connection. I've taken a PC and configured it to > run directly connected to my DSL modem and I can get connected. > > Does anyone know what has to be done to get the Contivity client to > work through the IP Tables firewall? > > Thanks! > > Cheers, > Mike > > > -------------------------------------------------------- > Mike Pelley "Non illegitimati carborundum" > Owner & "Misc. Rambler" of Pelleys.com > [EMAIL PROTECTED] - www.pelleys.com > > -- _______________________________________________ Redhat-list mailing list [EMAIL PROTECTED] https://listman.redhat.com/mailman/listinfo/redhat-list _______________________________________________ Redhat-list mailing list [EMAIL PROTECTED] https://listman.redhat.com/mailman/listinfo/redhat-list _______________________________________________ Redhat-list mailing list [EMAIL PROTECTED] https://listman.redhat.com/mailman/listinfo/redhat-list