Reply To: Configuring ZeroZhell’s default IKE port (I.E.: 10000)

Home Page Forums Network Management VPN Configuring ZeroZhell’s default IKE port (I.E.: 10000) Reply To: Configuring ZeroZhell’s default IKE port (I.E.: 10000)

#52934

Not a problem. I really appreciate the help.

Zs is going to be used to authenticate users on a local Lan, who want to use our DSL connection to connect to the internet.
This connection works no problem:
User (192.168.10.69) — Lan –> Zs (Private: 192.168.10.1; Public: 68.236.159.167) — DSL –> http://www.google.com

Some users will need to connect to the internet to initiate a VPN connection with our ASA firewall at another geographical location(asa is on a public ip address).
This is the path of the traffic that does not work:
User (192.168.10.69) — Lan –> Zs (Private: 192.168.10.1; Public: 68.236.159.167) — DSL –> ASA (xxx.xxx.xxx.xxx:500)
User (192.168.10.69) — Lan –> Zs (Private: 192.168.10.1; Public: 68.236.159.167) — DSL –> ASA (xxx.xxx.xxx.xxx:4500)

Instead, Zs is using port 10000 for IKE. I’ll represent it like this:
User (192.168.10.69) — Lan –> Zs (Private: 192.168.10.1; Public: 68.236.159.167) — DSL –> ASA (xxx.xxx.xxx.xxx:10000)
Our ASA is not configured to listen on port 10000 for cTCP.

What do you think?