We have a checkpoint firewall R55 ,and have configured remote access
vpn(which was working perfect until now)we have a peculiar problem
,whenever any securemote user tried to create a site he is thrown the
authentication challenge and after IKE just hangs ending in "failed to
communciate with gateway x at site x"
When i check the firewall logs i am able to trace accept for IKE _topo
and IKE but nothing beyond that no drop /encrypt nothing
AUthentication:Hybrid firewall username/password
I have carried out following steps
1)Am able to telnet to fw ike topo port from VPN client machine
2)CLeared the Ipsec and Ike sa (to counter corrupt ike tables)
3)Have checked IKE over tcp enabled
4)The ICA certicate is valid
5)users are valid
Still no luck...the IKE just hangs after the authetication prompt and
ends in "failure to communcate with site x)
Please advise
HELP DEEPLY appreciated
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|