[c-nsp] Tunnel from a Cisco behind NAT

Jorge Evangelista netsecuredata at gmail.com
Sun Jan 4 19:23:11 EST 2009


You could forward PPTP protocol to router Cisco. What kind of router Cisco
do you have? What is IOS version?



On Sun, Jan 4, 2009 at 7:12 PM, Brett Looney <brett at looney.id.au> wrote:

> > I have a Cisco device that is behind a NAT router already and I am
> > wishing to make a tunnel to another router which is live.
>
> I have done this with IPSEC. If the NAT is not static (i.e. you can't
> initiate a session to the router behind the NAT) then you can only bring up
> the tunnel from that router but it does work...
>
> The only caveat is that some NAT devices don't NAT IPSEC correctly but I
> haven't found any like that for a few years now. Plus, you can enable NAT-T
> and that helps in most cases.
>
> B.
>
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>



-- 
"The network is the computer"


More information about the cisco-nsp mailing list