[vpn] IPSEC/NAT
Jim Terry
jtixthus at attbi.com
Mon Jul 1 16:17:08 EDT 2002
Thank you all for your responses. This helps very much.
JT
----- Original Message -----
From: "Lisa Phifer" <lphifer at fast.net>
To: "Jim Terry" <jtixthus at attbi.com>
Sent: Monday, July 01, 2002 4:36 AM
Subject: Re: [vpn] IPSEC/NAT
> At 07:17 AM 6/30/2002 -0700, Jim Terry wrote:
> >Is it a 1-to-1 correlation with globals and VPN tunnels
>
>
> Yes - as long as you have more active tunnels than IPs,
> you are doing PAT, with all its attendant problems.
>
> You'll find a good description of the problem, along with a
> workaround being implemented by several products, in these I-Ds:
>
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-nat-reqts-01.txt
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-nat-t-ike-03.txt
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-udp-encaps-03.txt
>
>
>
>
>
VPN is sponsored by SecurityFocus.com
More information about the VPN
mailing list