[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW-1] VPN question
Hi, Did you refresh SR client topology after that. If you have further problems try with debuging VPN either on server or client side: Server side: run command "vpn debug ikeon/ikeoff". Information is written into ike.elg file ($FWDIR/log directory). You don't have to restart fw for debugging with "vpn debug". After connection attempt check the file Ike.elg. You can use also utility called "IKE view" for searching .elg file. Client side: use utility Srinfo.exe and reproduce the problem: "srinfo > srinfo.txt". After connection attempt check file srinfo.txt for errors. You can find additional informations in "Advanced troubleshooting guide" for NG FP1. Good Luck, Andrej Skamen System engineer Hermes Plus S&T Group Kersnikova 19 3000 Celje, Slovenija Tel: +386 3 4284000 Fax: +386 3 4284031 Web: www.hermes-plus.si -----Original Message----- From: Rajesh [mailto:[email protected]] Sent: Friday, August 30, 2002 2:24 AM To: [email protected] Subject: Re: [FW-1] VPN question Hi, I've changed the firewall object IP to external IP but it didn't solve the problem. I can't communicate with any host in the encryption domain. Thanks, Rajesh. >MIME-Version: 1.0 >Content-Transfer-Encoding: 7bit >Date: Thu, 29 Aug 2002 11:09:59 +0800 >From: Sidharth Bhadani <[email protected]> >Subject: Re: [FW-1] VPN question >To: [email protected] > >*This message was transferred with a trial version of CommuniGate(tm) Pro* >Hi, > >I had encountered similar problem . I did change the firewall object IP >to external IP address ,this seemed to solve the problem. > >Hope it helps > >Cheers > > >-----Original Message----- >From: Mailing list for discussion of Firewall-1 >[mailto:[email protected]] On Behalf Of >Rajesh >Sent: Thursday, August 29, 2002 9:18 AM >To: [email protected] >Subject: [FW-1] VPN question > >*This message was transferred with a trial version of CommuniGate(tm) >Pro* > Hi everyone, > > I am in the process of configuring VPN on a SUN E220R (solaris 8, >Checkpoint NG >FP-1) box. I can connect to the firewall from the SecuRemote client >(Internet). >I can download the site toplogy after that I can't ping our internal >PC's. > > I was going through the Troubleshooting procedures in the manual and I >found >this: > > It is crucial that the computer's host name correspond to the IP >address of its >external interface's IP address. I hope they are talking about the >firewall >gateway hostname. > > My firewall gateway hostname is pointing to the internal interface. Do >you >think my VPN is not working because of that. If I change the hostname to >the >external interface will it affect my firewall configuration. > > Thanks in advance. > Rajesh. > >Unix System Administrator >State Library of NSW >Macquarie Street >Sydney - 2000 > >Email: [email protected] >Ph: 02-92731711 > > > >==================================== >This email and any attachments to it are privileged and confidential. >If you >are not the intended recipient, please notify the sender and delete >it. The >contents of this email are not given or endorsed by the State Library >of New >South Wales unless otherwise indicated by an authorised officer of >the >Library. Copyright law may also apply to this contents of this email. >==================================== > >================================================= >To set vacation, Out Of Office, or away messages, >send an email to [email protected] >in the BODY of the email add: >set fw-1-mailinglist nomail >================================================= >To unsubscribe from this mailing list, >please see the instructions at >http://www.checkpoint.com/services/mailing.html >================================================= >If you have any questions on how to change your >subscription options, email >[email protected] >================================================= > >================================================= >To set vacation, Out Of Office, or away messages, >send an email to [email protected] >in the BODY of the email add: >set fw-1-mailinglist nomail >================================================= >To unsubscribe from this mailing list, >please see the instructions at >http://www.checkpoint.com/services/mailing.html >================================================= >If you have any questions on how to change your >subscription options, email >[email protected] >================================================= Unix System Administrator State Library of NSW Macquarie Street Sydney - 2000 Email: [email protected] Ph: 02-92731711 ==================================== This email and any attachments to it are privileged and confidential. If you are not the intended recipient, please notify the sender and delete it. The contents of this email are not given or endorsed by the State Library of New South Wales unless otherwise indicated by an authorised officer of the Library. Copyright law may also apply to this contents of this email. ==================================== ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] ================================================= ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
|