Re: NAT-T question...
From: John Smith (na_at_na.com)
Date: 11/25/04
- Next message: Lanwench [MVP - Exchange]: "Re: Consumer based One to One NAT device"
- Previous message: JJ: "Consumer based One to One NAT device"
- In reply to: Jorge Coronel: "Re: NAT-T question..."
- Next in thread: Jorge Coronel: "Re: NAT-T question..."
- Reply: Jorge Coronel: "Re: NAT-T question..."
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 25 Nov 2004 15:06:21 -0700
hum very interesting that this is no longer recommended.. but for now I
still need to do it..
I made the reg change and rebooted and now when I try to connect very
quickly it says "Error 651: The modem (or other connecting device) has
reported an error"
Is there a way to find what his error is? I looked in the even log and other
places but couldn't see anything. Everything is happening much faster now,
like the error comes up in a few seconds. I also can see UDP 500 and 4500
packets going both ways from the firewall. Right now 5 UDP 500 ISAKMP
packets followed by 6 4500 ESP and 2 more 500s for every time I try to
connect.
"Jorge Coronel" <jcoronel@online.microsoft.com> wrote in message
news:u4Tdvco0EHA.3908@TK2MSFTNGP12.phx.gbl...
> That deploymen is not longer recomended by MS; in order to make it work
> you'll need to check the following KB...
>
> 885407 The default behavior of IPSec NAT traversal (NAT-T) is changed in
> Windows XP Service Pack 2
>
> This will tell you what is the regkey you'll need to add to your XP box in
> order to initiate to a server that is behind a NAT
> I hope this helps
> JC
>
>
>
> "John Smith" <na@na.com> wrote in message
> news:eq9lkUa0EHA.1392@TK2MSFTNGP14.phx.gbl...
>>I have RAS up and running on a win2003 server, and have LT2P and IPSEC
>>running with certificates I have tested this directly and can connect. I
>>am now trying to connect over NAT-T from a XPSP2 client and it's not
>>working here is what I've done.
>>
>>
>>
>> I have tried connecting from both of the below:
>>
>> [client with public IP] -> [internet] -> [NAT/FW] -> [server] [client
>> with private IP] -> [NAT] -> [internet] -> [NAT/FW] -> [server]
>>
>> I have also checked my firewall and all ports needed are open and I see
>> traffic going to and from the IP of the client on ports 500 and 4500.
>> Everything seams right but after about 40sec of the client connecting I
>> get an error of "Error 678 the remote computer did not respond" Does
>> anyone have any ideas or how I troubleshoot it farther?
>>
>>
>>
>> Thanks
>>
>>
>
>
- Next message: Lanwench [MVP - Exchange]: "Re: Consumer based One to One NAT device"
- Previous message: JJ: "Consumer based One to One NAT device"
- In reply to: Jorge Coronel: "Re: NAT-T question..."
- Next in thread: Jorge Coronel: "Re: NAT-T question..."
- Reply: Jorge Coronel: "Re: NAT-T question..."
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|