Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 27 May 2003 11:14:55 -0400 (EDT)
From:      Steve Bertrand <iaccounts@northnetworks.ca>
To:        "H.Wade Minter" <minter@lunenburg.org>
Cc:        questions@freebsd.org
Subject:   Re: IPSec Pass-thru?
Message-ID:  <20030527111327.W28747@diana.northnetworks.ca>
In-Reply-To: <022A3DDE-8D82-11D7-8241-000393C3212A@lunenburg.org>
References:  <022A3DDE-8D82-11D7-8241-000393C3212A@lunenburg.org>

next in thread | previous in thread | raw e-mail | index | archive | help
> I've got a FreeBSD RELENG_4 firewall/NAT box on my home network.  I
> need to use a Cisco Pix VPN client from within the NAT'd network,
> through the FreeBSD box, out to the corporate gateway.
>
> Can any of the FreeBSD firewalls (ipfw/ipf/etc) allow this pass-thru?
> Or do I need to look at a Linksys appliance or something else?

You should be able to do simple redirect_port with 'esp' and 'ah' (check
/etc/services for port numbers) and port 500 for IKE through natd.

Haven't tried it personally, but I can't see why it won't work.

Steve

>
> Thanks,
> Wade
>
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"
>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030527111327.W28747>