cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
423
Views
0
Helpful
2
Replies

VPN3002 VPN Tunnel

robert.l.jones
Level 1
Level 1

Unable to connect VPN3002 Hardware Client to VPN3030 Concentrator. VPN3002 using same user group at Software clients and they are able to connect. VPN3002 in NEM, follow error from client:

420 09/12/2004 00:20:14.300 SEV=4 IKE/41 RPT=55 XXX.XXX.XXX.XXX

IKE Initiator: New Phase 1, Intf 2, IKE Peer XXX.XXX.XXX.XXX

local Proxy Address XXX.XXX.XXX.XXX, remote Proxy Address XXX.XXX.XXX.XXX,

SA (ESP-3DES-MD5)

423 09/12/2004 00:20:14.300 SEV=5 IP/45 RPT=33

Client transmitting TCP SYN pkt to device XXX.XXX.XXX.XXX on TCP src port 12465,

dst port 10000

425 09/12/2004 00:20:34.300 SEV=5 IP/36 RPT=33

Client fails to connect to headend device XXX.XXX.XXX.XXX on TCP port 10000.

VPN3030 Error message:

10369 09/12/2004 00:07:07.560 SEV=5 IKEDBG/64 RPT=162 XXX.XXX.XXX.XXX

IKE Peer included IKE fragmentation capability flags:

Main Mode: True

Aggressive Mode: True

2 Replies 2

didyap
Level 6
Level 6

Since you are using NEM, make sure to go under the groups HW client tab on the 3030 and check Allow Network Extension

Mode.

Allow network extension mode is checked. Could this be an issue with UDP port 10000 not being open all the way through?