We are currently attempting to implement a Blue Socket Gateway in order to authenticate our wireless clients.
I have been instructed by Blue Socket that the certificate used by them will not work through a NAT translation and that I should put this device on the outside of my ASA firewall. Apparently, when the Blue Socket creates the certificate it is using the internal IP address and the server (which is offsite on another network) is trying to compare the external IP address (NATed address) to the internal IP address and is failing to authenticate because they do not match.
I know I have not provided a great deal of specific details, but I was hoping someone has run into this before and can point me in the right direction.
November 7, 2006 5:05 PM
November 8, 2006 1:30 PM