This is detailed in the FP3 vpn user guide in the chapter on vpn routing. You are much better off running r-55 if you want to do hub mode/route all traffic through gateway, much cleaner setup.
-----Original Message----- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Mart Heubel Sent: Tuesday, January 18, 2005 7:04 AM To: [email protected] Subject: [FW-1] Q: how to enable SecureClient "hub mode" ? When I check the "route all traffic through gateway" option on SecureClient I'm no longer able to connect to the firewall; instead, this message appears: "You are trying to connect using "route all traffic through gateway". This feature appears not to be supported on the gateway. Do you want to continue?" When clicking Yes these messages appear: Checking network connectivity... Preparing connection... Connecting to gateway... Route all traffic through Gateway is not supported by the Gateway. Please update site or select a different Connection Profile. IKE negotiation failed Connection failed The firewall is at level NG3. Unfortunately I can't find any info about how to setup NG3 to accept the "hub mode", or wether or not NG3 even supports it. Hints, tips & ideas on this topic will be very welcome... IMPORTANT: This message and any attachment(s) are confidential and may contain trade secrets and may also be legally privileged or otherwise protected from disclosure. This information is solely intended for use of the individual or entity to whom it is addressed and others authorized to receive it. If you have received it in error, you are on notice of its status. Please notify us immediately by reply e-mail and then delete this message and any attachment from your system. If you are not the intended recipient please understand that it is prohibited to disclose, copy, distribute or take any action that relates to this message and any attachment. T-Systems does not guarantee that this message and any attachment(s) can in any way not cause damages at all and does not accept liability for such circumstances. Also liability is neither accepted for the correctness, the proper and complete transmission of this message and any attachment nor for any delay in its receipt. ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] ================================================= ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
