[vpn] IPSEC/NAT

Jim Terry jtixthus at attbi.com
Mon Jul 1 16:17:08 EDT 2002


Thank you all for your responses.  This helps very much.

JT

----- Original Message ----- 
From: "Lisa Phifer" <lphifer at fast.net>
To: "Jim Terry" <jtixthus at attbi.com>
Sent: Monday, July 01, 2002 4:36 AM
Subject: Re: [vpn] IPSEC/NAT


> At 07:17 AM 6/30/2002 -0700, Jim Terry wrote:
> >Is it a 1-to-1 correlation with globals and VPN tunnels
> 
> 
> Yes - as long as you have more active tunnels than IPs,
> you are doing PAT, with all its attendant problems.
> 
> You'll find a good description of the problem, along with a
> workaround being implemented by several products, in these I-Ds:
> 
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-nat-reqts-01.txt
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-nat-t-ike-03.txt
> http://www.ietf.org/internet-drafts/draft-ietf-ipsec-udp-encaps-03.txt
> 
> 
> 
> 
> 


VPN is sponsored by SecurityFocus.com





More information about the VPN mailing list