Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I found several doc's on CCO about creating a VPN connection from a PIX 501 to a 3000 Concentrator using the VPNClient feature in 6.2.x of the PIX software (specifically "Configuring the VPN Hardware Client on PIX 501/506 Version 6.2 for Use With a V...
We were seeing the same thing with the 3.5 ver of the client. Actually it worked ok for while and then we started seeing the same errors you described. We went to ver 3.6.3b and that has so far fixed the problem for the 30 or so clients whow were h...
If you are trying to do IPSec over L2TP with the Microsoft client then you need a digital certificate for the client. There is a reg hack you can use to disable IPSec encryption and get the MS client to work, but then you are only tunneling the pack...
I have it running under Gentoo. I haven't tried using dig certificates yet but it does work. You have to manually define a profile file in /etc/CiscoSystemsVPNClient/Profiles and then make sure that you've run vpnclient_init that should me located...
We have had this with several of our users in different parts of the country. So far it has only been with clients who have DSL connections that use an Effiecient Networks DSL modem. It appears to be an MTU problem between the Cisco Client, W2k o...
You can set up a W2K server as a CA and point the Concentrator to it to do check the CRL. You have to make sure that CRL is not filtered on the interface where the CA is located. The W2K server has to be an AD domain controller because the Concent...