Firewall-1

[FW-1] VPN over GPRS network

Subject: [FW-1] VPN over GPRS network
From: David Wellington <justneed2 AT GO4 DOT IT>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Thu, 22 Apr 2004 08:49:25 -0000
Hi All,

We use SecureClient NG FP3 with the same version of Policy
Server, Checkpoint NG FP3 running on Nokia platform IPSO 3.5.

we are able to establish VPN tunnel using PSTN and broadband, we
have made sure thataddress scheme usedwithin the encryption
domain namely
192.168.x.0 DMZ
10.x.0.0 remote office1
10.y.0.0 remote office2
10.z.0.0 remote office3

is different from a remote NATed address for instance in the case
of broadband, With the GPRS i have spoken to 02-GPRS provider,
they have enabled APN which facilitates the use of a third party
VPN product like Secureclient. The virtual adapter created by the
Wireless GPRS card binds with Secureclient, we are able to browse
the internet, but when we try the secureclient we are unable to
establish a tunnel, we get errror communicating with gateway, or
communcation with gateway failed, with no logs, i am able to ping
the external interface of the Firewall,

Bear in mind the GPRS card dynamically assigns a 10 address range
different from the range listed above, and we are NATed to a
public 193.113.x.t address. In the rulebase we have explicit
rules allowing traffic from the
193.113.x.0 network, there's no static routing enabled or Network
address translation, please has any1 any ideas for the way
forward, as i keep hitting a stumbling block

thanks All

Desh
This message was sent using Go4.it Webmail. To register your own
FREE Go4.it Webmail account, please Click Here!

Go4.it is the UK's fastest growing Search Engine with an
integrated Business Search facility and extensive Travel Portal.
We also provide UK Broadband at incredibly competetive prices.

Visit Go4.it now >> www.Go4.it.



=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>