[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] MSN\Qwest ships DSL modem with "unconfigurable" firewall



Greetings!

On Mon, 05 Apr 2004 09:01:20 -0400 David Gianndrea
<dgianndrea@xxxxxxxxxxxxxx> wrote:
>
> Look up NAT-T @ cisco.com. That should help ya!
 
I found e.g.
http://cisco.com/en/US/products/hw/vpndevc/ps2284/products_tech_note09186a00800946af.shtml

which says basically the same - but that Cisco is supplying an
encapsulation solution, too. They're using udp/4500 and/or udp/10000 -
and you have to explicitly enable encapsulated mode (IPSec through NAT
UDP Port /  IPSec over NAT-T).

Bye

Volker Tanger
ITK Security

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html