Re: VPN/IPSEC trouble with Checkpoint

2007-01-12 Thread Stefan Sczekalla-Waldschmidt
OTECTED] > Im Auftrag von Olivier Horn > Gesendet: Donnerstag, 11. Januar 2007 18:15 > An: misc@openbsd.org > Betreff: VPN/IPSEC trouble with Checkpoint > > Hi all! > I have a problem with a VPN tunnel. > > The VPN is set between an OpenBSD 4.0 GENERIC and a Checkpoint

Re: VPN/IPSEC trouble with Checkpoint

2007-01-11 Thread Camiel Dobbelaar
If you are willing to try ipsec.conf instead of isakmpd.conf. I use the following for a VPN with a Checkpoint NG. ike esp from a.a.a.a/24 to b.b.b.b/20 \ local x.x.x.x peer y.y.y.y \ main auth hmac-md5 enc 3des group grp2 \ quick auth hmac-md5 enc 3des group none \ psk secretsecr

Re: VPN/IPSEC trouble with Checkpoint

2007-01-11 Thread bofh
Are you sure it's not a problem with fp3? Iirc, there were some interoperability issues with that version. Latest patches for FP3? On 1/11/07, Olivier Horn <[EMAIL PROTECTED]> wrote: Hi all! I have a problem with a VPN tunnel. The VPN is set between an OpenBSD 4.0 GENERIC and a Checkpoint NG

VPN/IPSEC trouble with Checkpoint

2007-01-11 Thread Olivier Horn
Hi all! I have a problem with a VPN tunnel. The VPN is set between an OpenBSD 4.0 GENERIC and a Checkpoint NG FP3. When I etablish the tunnel all is okay for a while. But after a moment (variable) the tunnel break because a NO_PROPOSAL_CHOSEN. The problem appear to come from the OpenBSD side (see