RE: [Users] windows 2000 + freeswan -> works. need advice for firewall-setup

From: Cressatti, Dominique (Dominique.Cressatti_at_lansa.co.uk)
Date: Thu Sep 19 2002 - 19:17:09 CEST


>>now i want to know which ports i need to open (exept udp/500 for
>>key-exchange)
50, 51 and 500 AFAIK.
As for NAT I think there are examples in the doc
about firewall.
Personaly I use fwbuiler which doesn't do a bad job
(thouhg I wish I there was CLI for it instead of a
GUI). In fwbuilder the procols are AH, ESP and IKE.

Dom

-----Original Message-----
From: Stefan_Walther_at_gehag-dsk.de [mailto:Stefan_Walther_at_gehag-dsk.de]
Sent: 19 September 2002 09:44
To: users_at_lists.freeswan.org
Subject: [Users] windows 2000 + freeswan -> works. need advice for
firewall-setup

first: thank you very much for helping me setting up a freeswan connection
with windows2000/XP.

now i have another problem:

my setup is the following

<internal network>---<firewall>--<freeswan-gateway>---<firewall with
NAT>---<internet>

now i want to know which ports i need to open (exept udp/500 for
key-exchange) and maybe someone can give me an example for NAT with
iptables.

I already installed the NAT-T patch.

THX and

Best Regards,
MfG.

Stefan Walther
stefan_walther_at_gehag-dsk.de
dienst.: +4930/89786448
Funk: +49172/3943961
http://www.gehag-dsk.de

--------------------------------------------------------------
Linux/UNIX is like an Indian Tipi:
No Windows, no Gates and Apache inside.

Outgoing Mail is certified mistake-free.
Examined by DOGMATIC infallibility system.
Version 6.04
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Sun Sep 22 2002 - 05:20:13 CEST