I don't use anything like Symantec Ghost. Everywhere is individual installation of SecureClient. When on Nokia IPSO "vpn tunnelutil" is used I can see a lot of IKE and IPsec SA for users which are not connected . Should it be cleared when user disconnect?
pozdrawiam Sławomir Głowacki -----Original Message----- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Ray Sent: Friday, March 31, 2006 3:16 AM To: [email protected] Subject: Re: [FW-1] SecureClient error - tunnel test (NGX R60) It's possible if you deploy new computers with SecureClient pre-installed and you also use a disk imaging program like Symantec Ghost. There's a unique "virtual MAC address" created as part of the installation in the registry. Any chance you're deploying computers like this? Ray >From: Gùowacki Sùawomir <[EMAIL PROTECTED]> >Reply-To: Mailing list for discussion of Firewall-1 ><[email protected]> >To: [email protected] >Subject: Re: [FW-1] SecureClient error - tunnel test (NGX R60) >Date: Thu, 30 Mar 2006 17:58:35 +0200 > >Yes I'm Rusing Office mode. But it's impossible that this address is used >inside LAN. I have ip pool to use only for remote users. I think that maybe >chceckpoint want to assign address that was assigned to the previous user? >Bat how that can be possible? > >pozdrawiam > >Sùawomir Gùowacki >-----Original Message----- >From: Mailing list for discussion of Firewall-1 >[mailto:[EMAIL PROTECTED] On Behalf Of Ray >Sent: Wednesday, March 29, 2006 2:08 AM >To: [email protected] >Subject: Re: [FW-1] SecureClient error - tunnel test (NGX R60) > >Are you using Office Mode? The error message says you should be because >someone else with the same local IP adress is connected at the same time. >Is >that possible? > >Ray > > >From: G³owacki S³awomir <[EMAIL PROTECTED]> > >Reply-To: Mailing list for discussion of Firewall-1 > ><[email protected]> > >To: [email protected] > >Subject: [FW-1] SecureClient error - tunnel test (NGX R60) > >Date: Tue, 28 Mar 2006 17:16:37 +0200 > > > >Hello > > > >I have a problem with SecureClient and Office Mode. Sometimes when the > >client connects to the gateway He gets information that connection is > >succesfull, but the communication doesn't work. Under Secure Client > >diagnostic we can see following error > > > >"Tunnel test failure. Try to check "Force NAT traversal mechanism (UDP > >encapsulation)" checkbox. If the problem persist contact your system > >administrator" > > > >Under Smart ViewTracker following: > > > >Type: Log > > > >Action: Login > > > >Protocol: udp > > > >Service: tunnel_test (18234) > > > >Information: message: Same SecuRemote IP (behind a NAT device) > >detected. Allowing new user '<user>'. Consider using Office Mode. > > > > > > > >UDP encapsulation checkbox is checked on SecureClient and on Gateway >also. > > > > > > > >When client disconnect, stop service and run again SecureClient he >usually > >can connect and everything works fine. > > > > > > > >The problem has appeared when we migrated from NG AI R56 (under R56 > >everythig was fine) to NGX R60. (HotFix 2 didn't solve the problem). I > >didn't fine in Secure Knowledge anything that helped. > > > > > > > >Could somebody help me? > > > > > > > > > > > > > > > >S³awomir G³owacki > > > >CCSE > > > > > > > > > >================================================= > >To set vacation, Out-Of-Office, or away messages, > >send an email to [EMAIL PROTECTED] > >in the BODY of the email add: > >set fw-1-mailinglist nomail > >================================================= > >To unsubscribe from this mailing list, > >please see the instructions at > >http://www.checkpoint.com/services/mailing.html > >================================================= > >If you have any questions on how to change your > >subscription options, email > >[EMAIL PROTECTED] > >================================================= > >================================================= >To set vacation, Out-Of-Office, or away messages, >send an email to [EMAIL PROTECTED] >in the BODY of the email add: >set fw-1-mailinglist nomail >================================================= >To unsubscribe from this mailing list, >please see the instructions at >http://www.checkpoint.com/services/mailing.html >================================================= >If you have any questions on how to change your >subscription options, email >[EMAIL PROTECTED] >================================================= > >================================================= >To set vacation, Out-Of-Office, or away messages, >send an email to [EMAIL PROTECTED] >in the BODY of the email add: >set fw-1-mailinglist nomail >================================================= >To unsubscribe from this mailing list, >please see the instructions at >http://www.checkpoint.com/services/mailing.html >================================================= >If you have any questions on how to change your >subscription options, email >[EMAIL PROTECTED] >================================================= ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] ================================================= ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
