From: Michael K. <mic...@ip...> - 2020-08-23 22:36:20
|
Hi Group I don't think I'm doing this correctly and its not working. And yes I realise that Astlinux can terminate IPsec but this is easier (if it works) as the device is already configured. Here is what I am doing: NAT EXT->DMZ UDP 0/0 500 Dest: 192.168.200.2 Pass EXT->DMZ ESP 0/0 Dest: 192.168.200.2 Pass EXT->DMZ AH 0/0 Dest: 192.168.200.2 Default Policy for DMZ to EXT: Pass DMZ->EXT Thanks so much. Regards Michael Knill |