VPN problem...

2009-10-01 Thread Alex Hewitt
I recently was relating on the list how a client was having a problem with their Linksys BEFSX41 router and the solution was that Linksys RMA'd the router. They apparently have removed the BEFSX41 model from their active product list so they sent me a BEFVP41 v2 model. I received it yesterday,

Re: VPN problem...

2009-10-01 Thread Ben Scott
On Thu, Oct 1, 2009 at 4:59 PM, Alex Hewitt hewitt_t...@comcast.net wrote: If the router doesn't know the time .. then the VPN connection might not work. Quite possible. If it's using X.509 certificates (like SSL does), one can specify effective and expiration dates in the certificate. If

Re: VPN problem...

2009-10-01 Thread Lloyd Kvam
On Thu, 2009-10-01 at 16:59 -0400, Alex Hewitt wrote: For the fun of it I set the router to obtain it's WAN address dynamically and immediately the VPN tunnel connected. I checked the logs but didn't see anything obviously wrong. I did notice that when the router is setup to use a dynamic

Re: VPN problem...

2009-10-01 Thread Ben Scott
On Thu, Oct 1, 2009 at 5:50 PM, Hewitt_Tech hewitt_t...@comcast.net wrote:  Any idea what protocols the LinkSys is using?  IPsec?  IKE?  SSL/TLS?  X.509? It's definitely using IKE. Okay, IPsec with IKE can use PSK or X.509 certificates. Which one is your LinkSys using? If it's PSK

Re: VPN problem...

2009-10-01 Thread Lloyd Kvam
On Thu, 2009-10-01 at 18:50 -0400, Hewitt_Tech wrote: Thanks for the help guys. I fixed it by setting up the cable modem as I was describing. I changed the Linksys router to get it's WAN address dynamically. I then re-configured the cable modem to create a DMZ which only has one computer (in

Re: VPN problem...

2009-10-01 Thread Ben Scott
On Thu, Oct 1, 2009 at 7:48 PM, Lloyd Kvam pyt...@venix.com wrote: I've seen DSL modems with 2 modes of behavior:      * bridge mode ...      * NAT/router ... I don't know if the cable modems offer similar capabilities. It's a bit different in cable-modem-land. DSL is typically running

Re: VPN problem...

2009-10-01 Thread Joshua Judson Rosen
Ben Scott dragonh...@gmail.com writes: On Thu, Oct 1, 2009 at 5:50 PM, Hewitt_Tech hewitt_t...@comcast.net wrote:  Any idea what protocols the LinkSys is using?  IPsec?  IKE?  SSL/TLS?  X.509? It's definitely using IKE. Okay, IPsec with IKE can use PSK or X.509 certificates. Which

Re: VPN problem...

2009-10-01 Thread Bill McGonigle
On 10/01/2009 08:06 PM, Ben Scott wrote: [1] The front panel says Comcast, but the top of the case still has a giant SMC molded into the plastic. Same model here. After turning off all of its 'features', it seems to work well. The only trick was changing the management interface to run on a