At 06:21 14.10.2002 +0000, you wrote:
>Thanks for the response. I tried to implement a simalar config at the
>checkpoint gateway without any luck. Is there a difference between VPN-1
>SecureClient NG and SecuRemote client ???

there is no difference between secureclient and securemote in the way you
configure you VPN-rules. SC provides additional functionality as personal
firewall ...

please check if you firewall-object has the external (internet) IP-address
in the general-tab and if VPN-1 is defined and alle required settings are
checked (DES, 3DES, AES, MD5, ...). make sure in the user-settings are only
IPsec-options selected that are also selected in the fw1-object.

cheers
reinhard

>>From: Ian Gilfillan <[EMAIL PROTECTED]>
>>Reply-To: Mailing list for discussion of Firewall-1
>><[EMAIL PROTECTED]>
>>To: [EMAIL PROTECTED]
>>Subject: Re: [FW-1]
>>Date: Fri, 11 Oct 2002 13:55:17 +0100
>>
>>Hi,
>>
>>This is how I did it,
>>
>>1.In the gatway object properties / VPN make sure "exportable for secure
>>remote" is ticked.
>>
>>2.Create a rule which says:
>>
>>secureremote@any        Destination Network     Any     Client Encrypt
>>Long    Gateway
>>
>>3.In Client Encrypt properties make sure source and destination read
>>"intersect with user database"
>>
>>4. Create and install your users.
>>
>>5. Make sure you are testing from a non-NAT'd machine i.e. dial-up
>>connection.
>>
>>That should do. As long as you have a Secure Remote licence installed.
>>
>>Cheers
>>
>>
>>-----Original Message-----
>>From: Mailing list for discussion of Firewall-1
>>[mailto:[EMAIL PROTECTED]] On Behalf Of
>>Sanket Pattekar
>>Sent: 11 October 2002 13:09
>>To: [EMAIL PROTECTED]
>>Subject: [FW-1]
>>
>>Hi
>>
>>I am having problems setting VPN-1 SecuClient NG to connect VPN 1/ FW1
>>gateway. I have configured the gateway as follows
>>
>>1. A workstation object represents the machine where the gateway is
>>installed. VPN is configured for IKE with 3-des for key exchange, MD5
>>for
>>data integrity, and pre-shared for authentication. For authentication
>>all
>>are checked.
>>
>>2. Network object represents the local network
>>
>>3. There is one user that is configired -- Authentication for this user
>>is
>>set to VPN-1 and firewall password
>>
>>When we try to connect to this gateway using VPN-1 SecureClient NG it
>>gives
>>the following error message --- "Negotiations with firewall has failed".
>>No
>>common authentication method with Firewall. A similar error is viewed in
>>the
>>server's log file
>>
>>Can any one guide me how to get away with this problem
>>
>>Sanket
>>
>>
>>_________________________________________________________________
>>Send and receive Hotmail on your mobile device: http://mobile.msn.com
>>
>>=================================================
>>To set vacation, Out Of Office, or away messages,
>>send an email to [EMAIL PROTECTED]
>>in the BODY of the email add:
>>set fw-1-mailinglist nomail
>>=================================================
>>To unsubscribe from this mailing list,
>>please see the instructions at
>>http://www.checkpoint.com/services/mailing.html
>>=================================================
>>If you have any questions on how to change your
>>subscription options, email
>>[EMAIL PROTECTED]
>>=================================================
>>
>>=================================================
>>To set vacation, Out Of Office, or away messages,
>>send an email to [EMAIL PROTECTED]
>>in the BODY of the email add:
>>set fw-1-mailinglist nomail
>>=================================================
>>To unsubscribe from this mailing list,
>>please see the instructions at
>>http://www.checkpoint.com/services/mailing.html
>>=================================================
>>If you have any questions on how to change your
>>subscription options, email
>>[EMAIL PROTECTED]
>>=================================================
>
>
>
>
>_________________________________________________________________
>Chat with friends online, try MSN Messenger: http://messenger.msn.com
>
>=================================================
>To set vacation, Out Of Office, or away messages,
>send an email to [EMAIL PROTECTED]
>in the BODY of the email add:
>set fw-1-mailinglist nomail
>=================================================
>To unsubscribe from this mailing list,
>please see the instructions at
>http://www.checkpoint.com/services/mailing.html
>=================================================
>If you have any questions on how to change your
>subscription options, email
>[EMAIL PROTECTED]
>=================================================

--
Reinhard Stich,   ASSIST    [EMAIL PROTECTED]
Internet Security AG, 1190 Wien, Nussdorfer Laende 29-33
Tel: +43 1 370 94 40  RS784-RIPE Fax: +43 1 370 94 40-10

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to