Solved

IPSec Tunnel Tru. ISA or Microsoft Forefront Threat Management Gateway

Posted on 2009-05-19
3
798 Views
Last Modified: 2013-12-04
I have ISA2006 server installed on my office network and all the pc on the network are  using SNAT. some of the users on the network  have nortel vpn client to connect to corporate head office. Through ISA2006/TMG SNAT nortel vpn client fails to establish a tunnel.
The policy for ISA is set to allow all traffice from inside(internal network) to external and no other restriction is added in the policy.
nortel client version is v04_87
0
Comment
Question by:Manojc3
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 29

Accepted Solution

by:
pwindell earned 500 total points
ID: 24487066
It is failing due to NAT-T  (NAT Traversal)

IPSec is not capable of running over NAT.  If the Nortel Client was using PPTP it would be working fine.  To overcome the IPSec's failure of NAT requires NAT Traversal.  

Make sure the Nortel Client is configured to use NAT-T

These links may help:
http://www.isaserver.org/articles/IPSec_Passthrough.html
http://forums.isaserver.org/m_2002012471/tm.htm
0
 

Author Comment

by:Manojc3
ID: 24603930
Yes I downloaded the new notel vpn client 6.0 which has NATT support. It working now. Thank you.
0
 
LVL 29

Expert Comment

by:pwindell
ID: 24604025
Very good.  Glad it worked out for you.
 
0

Featured Post

Cloud Training Guides

FREE GUIDES: In-depth and hand-crafted Linux, AWS, OpenStack, DevOps, Azure, and Cloud training guides created by Linux Academy instructors and the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In today's information driven age, entrepreneurs have so many great tools and options at their disposal to help turn good ideas into a thriving business. With cloud-based online services, such as Amazon's Web Services (AWS) or Microsoft's Azure, bus…
In a recent article here at Experts Exchange (http://www.experts-exchange.com/articles/18880/PaperPort-14-in-Windows-10-A-First-Look.html), I discussed my nine-month sandbox testing of the Windows 10 Technical Preview, specifically with respect to r…
Monitoring a network: why having a policy is the best policy? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the enormous benefits of having a policy-based approach when monitoring medium and large networks. Software utilized in this v…
This tutorial will teach you the special effect of super speed similar to the fictional character Wally West aka "The Flash" After Shake : http://www.videocopilot.net/presets/after_shake/ All lightning effects with instructions : http://www.mediaf…
Suggested Courses

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question