Re: BTW our goal is to replace our Chillispot server with Zs.

Home Page Forums Network Management VPN Configuring ZeroZhell’s default IKE port (I.E.: 10000) Re: BTW our goal is to replace our Chillispot server with Zs.

#52931

Thanks for follow up.

BTW our goal is to replace our Chillispot server with Zs.

Hopefully I can explain better:

Note in the sample ASA FW logs:
The Zs server IP is 68.236.159.167
The ASA’s IP is represented as ###.###.###.###
The Chillispot server IP is 68.236.159.162

After I successfully connect to Zs, I want to then connect to my cisco ASA using Cisco’s VPN Client (ver 5) configured with IPSec over UDP.

Here are a sample of my ASA logs when the VPN connection works using our Chillispot server instead of Zs:

Built inbound UDP connection for INTERNET:68.236.159.162/61169 (68.236.159.162/61169) to identity:###.###.###.###/500

Built inbound UDP connection for INTERNET:68.236.159.162/61170 (68.236.159.162/61170) to identity:###.###.###.###/4500

Here are a sample of my ASA logs when the VPN connection does not work using Zs:
IP = 68.236.159.167, IKE port 10000 for IPSec UDP already reserved on interface INTERNET

It’s like Zs is using cTCP instead of IPSec over UDP which is what my cisco client is configured to use.

Does that make sense ?