Hi Reinhard,

do you know if there is some special config necessary for [EMAIL PROTECTED] boxes as well? I did check "Allow L2TP clients to connect" and use the right PSK and it does show the messages below in the log in the [EMAIL PROTECTED], but the iPhone gives me following message: Internet connect - The server does not exist. Please verify the server address and try again.

39492 09Aug2008 10:16:56 IKE Phase2: Completed successfully with VPN peer 193.247.250.1 [My Ranges: 85.5.38.54-85.5.38.54 Peer Ranges: 10.142.32.210-10.142.32.210 Security: AES-128/SHA1 Expire time: 1 hour(s), 0 second(s) NAT-T: turned on] 39491 09Aug2008 10:16:45 Successfully authenticated user connecting from ip 193.247.250.1 39490 09Aug2008 10:16:45 IKE Phase1: Completed successfully with VPN peer 193.247.250.1 [Security: 3DES/SHA1 Expire Time: 59 minute(s), 58 second(s) NAT-T: turned on] 39489 09Aug2008 10:16:43 IKE Phase1: This VPN gateway is behind a NAT device: NAT-T mode enabled for VPN peer

I have a 500W.

Thx for any hint,

Stefan

Am 09.08.2008 um 08:38 schrieb Reinhard Stich:

hi,

aes128 should be the default encryption-algorythm for that.

br
reinhard

--
Reinhard Stich, Internet Security AG
Mobile email powered by Nokia Intellisync
*** please reply-to-all if you answer to this mail ***
-----Ursprüngliche Nachricht-----
Von: Ted Serreyn
Gesendet: 09.08.2008 00:06:45
An: Mailing list for discussion of Firewall-1
Betreff: Re: [FW-1] Iphone L2TP VPN connection


Contact me offline, I can give you some more pointers. In particular you
must support AES-128 on your firewall.  (gotta love that lack of
documentation).

--

Ted Serreyn Phone:262-432-0260 Fax:262-432-0232

Serreyn Network Services, LLC http://www.serreyn.com/


-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of Reinhard
Stich
Sent: Friday, August 01, 2008 7:19 AM
To: [email protected]
Subject: Re: [FW-1] Iphone L2TP VPN connection

hi,

we have successfully configured the l2tp-patch for the iPhone on our
nokia based R65. works fine.

did you create the l2tp.conf on the gateway?

br
reinhard

At 13:53 01.08.2008, you wrote:
Hello,

I have an Apple Iphone device and i am trying to connect to
Checkpoint(NGX R65 HFA02 on SecurePlatform) with L2TP VPN, but I couldn't
yet.

I installed VPN-1_R65_HFA_02_Supplement_3.linux.tgz patch(Checkpoint
released a patch about this issue). But it couldn't again. Do you
have any idea about problem? How can i connect Iphone with Checkpoint?

Thank you.

Gokhan Gulen




Scanned by Check Point Total Security Gateway.


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

--
Reinhard Stich          [EMAIL PROTECTED]
Internet Security AG,      1150 Wien, Johnstrasse 29
Tel: +43 1 3709440 RS784-RIPE Fax: +43 1 3709440-333


Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================


Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================


Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================


Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to