Hi again folks,
After having another go at tackling the IPSec RFC's i've answered a few of
my own questions... But still remaining is:
How do I make my secure client connections negotiate the Security
Association with Main Mode (Identity Protection) IKE?
I'm not too keen to have my User Names passed in cleartext when they
shouldn't need to be.
On my Firewall object, VPN Tab, under 'IKE' - I have unticked "Supports
Aggresive Mode", yet the Secure Client connections still negotiate the
security association with this mode.
I've tried updating the Client topology, restarting Secure Remote - but no
joy. The only thing left to try (which i'm not entirely prepared to try)
is a complete firewall restart.
Maybe Secure Client only supports Aggressive Mode?
Can anyone help??
Thanks,
-jonny
--
Jonny Robertson
Wellington
New Zealand
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================