Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
General question around authentication servers supported with VPN 3000 family. Is it always assumed that the authentication server resides on the private LAN side of VPN? For example, if I have a multi-site setup where the Authentication server is re...
I'm testing with VPN 3005 v3.6.3, VPN Client v3.6.2(B) and SecurID 5.0.1 (UNIX). When trying to authenticate user I receive following sequence early on in the EVent Log on the VPN 3005:2588 11/07/2002 16:45:18.380 SEV=9 AUTHDBG/174 RPT=494Ace Agent t...
Is it possible to create another "admin" user (with full privileges)but with a different password. The current v3.5.2 software seems to only allowone "username" to have "Administrator" capabilities.
Well I re-set SDI Server on public network and changed public interface filter to Any In, Any Out. The SDI server log never sees the request. The Concentrator log shows the following (IP Address is replaced with I even changed the default action fo...
I guess I'm a bit suprised that the Cisco documentation doesn't cover this. I had removed all rules. I'll go back to setup on public LAN and check out and try a couple more things as you suggested. Thanks for feedback.
Currently yes the SDI is on private LAN. I'm using the default filters (public+private) and everything works fine. When I tested with SDI server on public LAN, I used the "Any In, Any Out" filter on public, but it did not change error recvd. Do you k...
I'm using SDI (ACE/Server 5.0.1) Originally I had it setup using pubic interface. I've reviewed all logs (Concentrator (levels1-10) Client and SDI server) to no avail. It kept getting error 23 on Concentrator. As soon as I setup SDI server on privat...
THX-As far as problem w/Site A failure this could be replicated (assuming network doesn't fail). I'm using IPSec tunnels w/encryption, but what protects authentication requests Site B -> Site A (In the case of SDI, it appears to be just DES between V...