What ports would I have to allow on a router to allow Secure Client NG?


- TCP/264 (Topology Download)
- IKE
- IPSEC and IKE (UDP on port 500)
- IPSEC ESP (IP type 50)
- IPSEC AH (IP type 51)
- TCP/500 (if using IKE over TCP)
- UDP 2746 or another port (if using UDP encapsulation)
- TCP 18234 tunnel test (determines wheteher to use NAT traversal)
- TCP 259 RDP used to calculate peer gateway in MEP configurations

SecureClient specific connections:
- FW1_scv_keep_alive (UDP port 18233) - used for SCV keep-alive packets
- FW1_pslogon_NG (TCP port 18231) - used for SecureClient's logon to Policy Server protocol
- FW1_sds_logon (TCP port 18232) - used for SecureClient's Software Distribution Server download protocol

Added 23RD FEB 2003

 

< back