Hi guys,
I am trying to get the Cisco VPN client for Linux getting to work
properly with iptables. So far, I have to flush all the iptables
rules, connect to the cisco concentrator (which works fine) and then
raise the firewall. From here on everything works fine and I can use
the vpn connection being natted from all the machines on my internal
LAN.
However, when I try to establish the connection without shutting down
firewalling the vpn initialization hangs. From the logs I can see the
vpn client causes denied requests of negotiating random high ports.
Seems like this one needs some kind of connection tracking, or am I
wrong here? Anyone seen this before and how to solve it??
Thanks and cheers
Lars
|
|
0
|
|
|
|
Reply
|
lbebensee
|
2/12/2004 1:01:32 AM |
|