Re: IPSec client from behind a NAT
From: Christopher Black [MSFT] (christb-nospam_at_microsoft.com)
Date: 07/22/04
- Next message: Doug Sherman [MVP]: "Re: Windows 2003 Server / RAS server"
- Previous message: theo22: "Windows 2003 Server / RAS server"
- In reply to: Miha Pihler: "Re: IPSec client from behind a NAT"
- Next in thread: Igor Dombrovan: "Re: IPSec client from behind a NAT"
- Reply: Igor Dombrovan: "Re: IPSec client from behind a NAT"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 22 Jul 2004 15:27:34 -0700
You need the NAT-T update for Windows XP (pre-SP2) to work though a NAT.
See http://support.microsoft.com/default.aspx?scid=kb;en-us;818043
-- Chris
"Miha Pihler" <miha-news@atlantis.si> wrote in message
news:OYIEGWCcEHA.3012@tk2msftngp13.phx.gbl...
> What are you using for authentication? Kerberos, certificate, pre-shared
> key? Is this WinXP client part of same domain as Win2K3?
>
> Mike
>
> "Igor Dombrovan" <igor@chorus.com.ru> wrote in message
> news:%23s9hH6AcEHA.2340@TK2MSFTNGP10.phx.gbl...
>> Hi guys
>>
>> Anybody managed to configure an IPSec client (WinXP) to access a Win2K3
> from
>> behind a NAT ? I always get 547 event ID saying :
>> IKE security association negotiation failed.
>>
>> ...
>>
>> Failure Point:
>>
>> Me
>>
>> Failure Reason:
>>
>> No policy
>>
>> The policy is there, I bet. Google doesn't help at this time.
>>
>>
>>
>> Thanks
>>
>> Igor
>>
>
>
- Next message: Doug Sherman [MVP]: "Re: Windows 2003 Server / RAS server"
- Previous message: theo22: "Windows 2003 Server / RAS server"
- In reply to: Miha Pihler: "Re: IPSec client from behind a NAT"
- Next in thread: Igor Dombrovan: "Re: IPSec client from behind a NAT"
- Reply: Igor Dombrovan: "Re: IPSec client from behind a NAT"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|