Re: Urgent Problem with NG to 4.1 VPN

From:
Date: 11/14/02


Date: 14 Nov 2002 10:59:52 -0800

In article <3c8f8a12.0211141012.7970d8d1@posting.google.com>,
dave_canuck2001@yahoo.com says...
>
>All;
>
>We recently upgraded one of our locations to NG and since have had a
>problem with our VPN between our location with 4.1 and our location
>with NG. We are running 4.1 SP6 and NG FP3 respectively. We are using
>IKE with 3DES and SHA-1.
>
>When we stop and start the NG Firewall and every once and a while (no
>specific time frames) we lose connectivity one way in the VPN). The
>connection from the internal net behind the 4.1 FW loses connection to
>the net behind the NG Firewall.
>
>We get this error only in the Firewall on the NG side. The 4.1 FW
>encrypts OK.
>
>encryption failure: decrypted methods didn't match rule
>
>If we simply ping from the internal net behind the NG FW to the
>internal net behind the 4.1 FW all starts working again both ways.
>
>Help !

One thing you can check is that the renegotiate times are identical at both
ends. If one is shorter than the other, it may cause problems.

An emergency fix until you figure out the problem is to run a continual ping
from a little-used PC in the NG network. Primitive, but maybe it'll keep the
tunnel up.

--Steve



Relevant Pages

  • Re: More on Remote Desktop
    ... Chances are good, though, that he's already got VPN capabilities on his ... firewall to do it for $100. ... > server at home...or purchase additional/new hardware... ... >> my firewall makes the PPPoE connection to my ADSL ISP. ...
    (microsoft.public.windowsxp.network_web)
  • Re: More on Remote Desktop
    ... You realize the Remote Desktop data stream is encrypted the same as a PPTP VPN link... ... Unless of course the original poster wants to implement an L2TP/IPSec VPN server at home...or ... > firewall to get between your clients and server on your own LAN. ... > setup so that my firewall makes the PPPoE connection to my ADSL ISP. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Random Disconnects - ActiveSync 4.0/4.1/4.2
    ... Once I UNSINSTALLED the VPN client software (made by ... Simply disabling, or not using the client didn't matter. ... connection itself might be disabled, but the VPN client might still be ... The Windows Firewall actually is pretty good about having 'disabled' ...
    (microsoft.public.pocketpc.activesync)
  • RE: Encryption through NAT and State table
    ... whereas a Layer3 'stateful' firewall uses socket pairs ... The problem of running an IPSec VPN in your situation would be the key ... connection to our VPN end-point on the client network and instead will get ... Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts! ...
    (Security-Basics)
  • Sometimes it works sometimes it doesnt (VPN data issues)
    ... I am running a windows2k3 SBS server behind a linksys firewall. ... remote users having troubles connecting to our network. ... I figured this was a firewall issue blocking VPN data, ... the connection will stall and then starting the connection process ...
    (microsoft.public.windows.server.networking)

Quantcast