Problem using Cisco VPN to connect through a watchguard firewall

interesting little problem I am having with trying to use a Cisco VPN client to connect to a remote client through my WatchGuard X750e. Now, we have another client that we connect to the same way with the same basic configuration and works fine everytime using Cisco VPN client.

Any Thoughts??
steadfaststeveAsked:
Who is Participating?
 
richy92Commented:
Sorry thats tcp 10000 - but I read that cisco can be configured for any port so you need to check the cisco device to be sure

Have you tried allowing protocol 47 (GRE) some vpn clients use that one too - there should be defaults filters for IPSEC (ESP / AH) and PPTP (GRE) try turning those on apparently there is an IPSEC passthru tickbox under VPN - that should be checked as well
I dont have a watchguard and have never used one - so Im not familiar with the interface - I would be fairly sure its related to the above protocols tho
:)
0
 
richy92Commented:
Your probably going to need to allow GRE / AH or ESP through the watchguard - these are protocols often used by VPN clients

Think u need to allow protocol types 50/51 through (esp\ah) and udp 500/ udp 1000 or 4500 - depending on your setup
Theres lots of info in google about this - but its a bit all over the place - I am pretty sure that your problem is caused because the above protocols are not allowed through
I dont know alot about watchguard but in policy manger under VPN i think there is an option for ipsec passthru -that may help
I can post some links that may help if you like - but there not exact solutions to your problem


0
 
steadfaststeveAuthor Commented:
I have added a policy for the ipsec passthrough, I have also added a policy for Ipsec for ports UDP 4500, ESP, AH, UDP 500. The Cisco Client is not using port TCP 1000 I do not believe but, I still could add it to test it out.
0
 
steadfaststeveAuthor Commented:
I appreciate your help, I'll give that a try to see what I come out with.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.