Firewall-1

[FW-1] Simplified VPN community ID problem....

Subject: [FW-1] Simplified VPN community ID problem....
From: Vedantam sekhar <sekhar56us AT YAHOO DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Sat, 28 Aug 2004 04:06:29 -0700
Hi Team

I have a problem setting up the VPN tunnel between
Checkpoint NG AI and the Contivity.

We are able to establish the tunnel between the boxes
and we are able to reach The local network of Nortel
contivity from the local Network of the CP.But Not in
vice versa....i.e We are not able to reach the CP
network from the Contivity VPN domain.

1. It gives an error on CP,whenever we try to reach
the CP VPN domain(ofcourse frm contivity's local
network under VN domain)..."Encryption failure,implied
rule,Different community ID,possible NAT problem(VPN
error code 02).We tried diabling the NATING on the CP
local network(VPN Domain) but no luck.and the rule is
getting dropped on Rule 0(As shown in the log...)

can anybody suggest what this error message means and
what might have gone wrong...?

Is it purely a NAT problem or anything else...?

For the information, we are using the Simplified VPN
on the CP with GwtoGw community defined.

Could somebody focus some light on this please....


Thanks,
S







__________________________________
Do you Yahoo!?
Yahoo! Mail - 50x more storage than other providers!
http://promotions.yahoo.com/new_mail

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>
  • [FW-1] Simplified VPN community ID problem...., Vedantam sekhar <=