Support Center > Search Results > SecureKnowledge Details
IPSec VPN uses an incorrect source IP address for NAT-T when initiating encrypted traffic, IKE negotiation uses correct IP address Technical Level
Symptoms
  • IPSec VPN uses an external IP address. The user configured a different IP address in the incoming/outgoing link selection when initiating encrypted NAT-T traffic.
  • IKE negotiation uses the correct link selection IP address.
  • Response traffic to peer-initiated traffic uses the correct link selection IP address.
  • Remote Access uses the correct link selection IP address.
  • The resolved_link table shows the correct source IP address.
Cause

IPsec VPN uses the wrong source IP address when it initiates NAT-T encrypted traffic.       


Solution
Note: To view this solution you need to Sign In .