Firewall-1

[FW-1] VPN Gateway & Policy Server Problem

Subject: [FW-1] VPN Gateway & Policy Server Problem
From: Edward Panangian <milisedu AT GMAIL DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 16 Nov 2005 10:51:59 +0700
Dear Expert,

We have 2 Nokia IP 380 that we would like to set up in MEP configuration.
Both FW, A and B, use NG R55 with SecureClient Policy server installed.
Currently only A is activated as the VPN Gateway and Policy Server. We use
certificate scheme for authentication. It works appropriately in A. But when
we activate B as a VPN Gateway and Policy server, it can act as a VPN
gateway, but not as a Policy Server. VPN connection succeeded, but failed to
update policy from Gateway.
The authentication scheme that we used when connecting to B is username &
password. But when we used certificate authentication scheme, the connection
failed. B gateway was not responding.
The MEP has been configured. And once the A VPN Gateway failed, it will
re-route the traffic to B, but only when we used username and password
authentication scheme. When we used certificate scheme, the MEP didn't work.
Connection failed. B gateway was not responding

Why does the B policy server failed when I use the certificate scheme?
Should I re-install the Policy Sever?
Can we use certificate scheme for MEP?

 Many thanks in advance,
Edward

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>
  • [FW-1] VPN Gateway & Policy Server Problem, Edward Panangian <=