08-01-2008 01:30 AM - edited 03-09-2019 09:12 PM
Trying to establish an ipsec vpn connection to a remote site but also have the router configured for cisco vpn client connections.
debug crypto isakmp output in the attatched file:
Thanks in advance
Solved! Go to Solution.
08-03-2008 06:35 PM
Hi Rick
The other end is a checkpoint firewall. As it is not under my control I have asked them to send the logs through to me and will post an update shortly.
Kind regards,
Rob
08-17-2008 04:14 PM
Were you able to solve the issue? If not,
ask the Checkpoint Firewall engineer to do
this:
1- log into the firewall, NOT the SmartCenter via ssh,
2- type "vpn debug ikeoff",
3- type "vpn debug trunc"
4- type "vpn debug ikeon"
5- initiate traffics from either side,
6- get the ike.elg file in the $FWDIR/log
directory,
7- Use IkeView.exe to examine. It will tell
you EXACTLY why your VPN is not working.
8- Checkpoint troubleshooting is about 20
times better than Cisco.
Let me know if you need additional help
08-17-2008 09:16 PM
Hi there,
Yes it turns out there was a problem with the configuration at the checkpoint end. They have resolved this and now the vpn works fine.
Thank you all for your help.
Kind regards,
Rob
08-18-2008 08:00 AM
Rob
Thank you for posting back to this thread and indicating that you had resolved the problem. And thank you for using the rating system to indicate that your problem was resolved (and thanks for the rating). It makes the forum more useful when people can read about a problem and can know that they will read the solution to the problem.
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide