Firewall-1

Re: [FW-1] Problem with VPN

Subject: Re: [FW-1] Problem with VPN
From: pkc_mls <pkc_mls AT YAHOO DOT FR>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 4 Apr 2007 13:40:08 +0200
Julio Bretín Díaz a écrit :
Thanks to all of you, but I haven't found how to solve this yet. The problem is 
that all VPN connections worked before the Nokia appliance was restarted. Now 
all VPN connections have the same error that I described in my last mail. what 
can I do or what can I check?

I have reset all IPSEC and SAs in my FW1. Only the site to site VPN with other FW1 is working now.
Thanks in advanced and best regards,
you should enable vpn debug on the nokia.
vpn debug trunc

check afterwards the content of $FWDIR/log/vpnd.elg and ike.elg.
vpnd.elg is a text file, for the ike, you need ikeviewer which is part of the infoview tool available at checkpoint's website.

I already saw some strange config where I managed to have the things work again after removing all the vpn config, push the policy, then recreate exactly the same and push the policy again.
Julio.


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>