Click here to get back home

IPSec NAT-T disabled on SP2

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
IPSec NAT-T disabled on SP2 Ondrej Sevecek 09-19-2005
Posted by Ondrej Sevecek on September 19, 2005, 12:11 pm
Please log in for more thread options
According to:
http://support.microsoft.com/default.aspx?scid=kb;en-us;885407

the support for NAT-T has been disabled on XP Service Pack 2. However, my
clients have no problems connecting without any registry modifications (by
using L2TP). How
is that possible? I haven't found any note stating it is sometimes enabled.
Or I misunderstood the article and it applyes to some other problem or only
to a specific scenario?

O.





Posted by Steve Clark [MSFT] on September 19, 2005, 12:46 pm
Please log in for more thread options
It's not "disabled", rather, the article describes the behaviors changed in
XPSP2 and also details how to revert to pre-SP2 behaviors using the
AssumeUDPEncapsulationContextOnSend regkey.


"Ondrej Sevecek" <ondra at my_surname dot com> wrote in message
> According to:
> http://support.microsoft.com/default.aspx?scid=kb;en-us;885407
>
> the support for NAT-T has been disabled on XP Service Pack 2. However, my
> clients have no problems connecting without any registry modifications (by
> using L2TP). How
> is that possible? I haven't found any note stating it is sometimes
> enabled.
> Or I misunderstood the article and it applyes to some other problem or
> only to a specific scenario?
>
> O.
>
>
>




Posted by Steven L Umbach on September 20, 2005, 7:32 am
Please log in for more thread options
According to the KB article is has been disabled by default only for
situations in which the VPN server such as Windows 2003 [the responder] is
behind a NAT device and will still work if the VPN client [the initiator] is
behind a NAT device. --- Steve


"Ondrej Sevecek" <ondra at my_surname dot com> wrote in message
> According to:
> http://support.microsoft.com/default.aspx?scid=kb;en-us;885407
>
> the support for NAT-T has been disabled on XP Service Pack 2. However, my
> clients have no problems connecting without any registry modifications (by
> using L2TP). How
> is that possible? I haven't found any note stating it is sometimes
> enabled.
> Or I misunderstood the article and it applyes to some other problem or
> only to a specific scenario?
>
> O.
>
>
>




Similar ThreadsPosted
Services disabled by itself March 1, 2006, 8:40 pm
"Who disabled the user" problem March 28, 2007, 9:38 pm
Inherited Permissions disabled? October 12, 2007, 9:16 pm
Disabled Domain Computer Accounts September 20, 2006, 4:09 pm
server2008 password expiration disabled? February 28, 2008, 7:00 pm
PCs still function on domain with computer account disabled June 14, 2006, 3:51 pm
Logon to Windows disabled on Vista Remote Desktop December 12, 2007, 9:30 pm
Server 2003 sp1 - DCOM 'Edit Limits' button disabled June 17, 2005, 2:42 pm
Administrator account disabled but still get "incorrect password" errors in Event log May 4, 2008, 2:11 pm
Administrator account disabled but still get "incorrect password" errors in Event log May 4, 2008, 2:12 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap