3rd party VPNs & Wingate

Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems

Moderator: Qbik Staff

3rd party VPNs & Wingate

Postby rcyoung » Sep 04 04 4:05 pm

Has anyone figred out if it is even possible to have a client with a Cisco, Avaya, or Contivity VPN "inside" Wingates protected area, and configure things so that VPN can get out to a host on the general Internet?? Wingate's VPN is of no value since I am having to connect to several different customer sites, and each customer uses one of the above VPNs. My alternative is do dialup network over phone lines to a general ISP provider, but that is terribly slow. Wingate currently guards the only fast line going "outside".

One VPN uses IKE protocol (50/51) in addition to TCP/UDP. Not sure about the others.
rcyoung
 
Posts: 4
Joined: Sep 04 04 3:57 pm
Location: SC, USA

Postby genie » Sep 04 04 7:19 pm

VPN solution must support NAT-T - NAT traversal.
genie
Qbik Staff
 
Posts: 1788
Joined: Sep 30 03 10:29 am

Postby rcyoung » Sep 05 04 3:44 am

Ah yes, but has anyone tried ( successfully or not) to get any of these working through Wingate?
rcyoung
 
Posts: 4
Joined: Sep 04 04 3:57 pm
Location: SC, USA

Postby adrien » Sep 05 04 12:06 pm

we have had several clients going through I believe, including Cisco's PIX VPN client, MS L2TP NAT-T (requires 2003 server and XP clients), and Checkpoint's SecuRemote.

The solution needs to support tunnelling over UDP. the specification for IPSEC in native mode (i.e. ESP etc) is designed to not allow going through a NAT. Bit short-sighted of the protocol developers I think.

That is a major reason why we originally designed our own protocol which goes over UDP, since we were developing this prior to the NAT-T specification.

Adrien
adrien
Qbik Staff
 
Posts: 5448
Joined: Sep 03 03 2:54 pm
Location: Auckland

Postby luxifer » Sep 07 04 1:23 am

Is the problem not based in the fact that the VPN client loaded like "Nortel Connectivity" locks out the local network by changing the "tcp/ip route", and therefor is wingate unable to receive/send frames to the local network ?

Does wingate have an option which allow clients to connect using non TCP/IP protocol like "netbeui" ?
luxifer
 
Posts: 1
Joined: Sep 07 04 1:13 am

Postby labull » Sep 07 04 7:55 am

We have successfully made MS RRAS PPTP and CheckPoint VPN connections outbound trough WinGate.

Just need to know what ports to open.

Larry
WinGate Lurker
labull
WinGate Guru
 
Posts: 710
Joined: Sep 06 03 1:03 am
Location: Washington, DC - USA


Return to WinGate

Who is online

Users browsing this forum: No registered users and 4 guests