Can I run a VPN client from behind a NATed firewall with the NetMAX product?
No. VPN servers and clients must have public, routable IP addresses. VPN remote clients are designed to be used in a single machine SOHO environment. Frequently people attempt to put a client on a LAN workstation that is behind a NAT’ed firewall. This configuration will not function. In order to maintain maximum security, the VPN encrypts the source address in with the data packet. When the NAT device gets the packet it attaches a new source address to it. The packet is received by the destination VPN and when unencrypted, the internal source address in still the original private address of the LAN workstation. The VPN will not be able to respond to the senders. This problem can almost always be worked around by some minor adjustments to your LAN set-up.