[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] MSN\Qwest ships DSL modem with "unconfigurable" firewall
- To: David Gianndrea <dgianndrea@xxxxxxxxxxxxxx>
- Subject: Re: [Full-Disclosure] MSN\Qwest ships DSL modem with "unconfigurable" firewall
- From: "Volker Tanger" <volker.tanger@xxxxxxxxx>
- Date: Mon, 5 Apr 2004 15:30:14 +0200
Greetings!
On Mon, 05 Apr 2004 09:01:20 -0400 David Gianndrea
<dgianndrea@xxxxxxxxxxxxxx> wrote:
>
> Look up NAT-T @ cisco.com. That should help ya!
I found e.g.
http://cisco.com/en/US/products/hw/vpndevc/ps2284/products_tech_note09186a00800946af.shtml
which says basically the same - but that Cisco is supplying an
encapsulation solution, too. They're using udp/4500 and/or udp/10000 -
and you have to explicitly enable encapsulated mode (IPSec through NAT
UDP Port / IPSec over NAT-T).
Bye
Volker Tanger
ITK Security
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html