|
When talking
to Nokia support about this same error with a different VPN hardware on the
other end, they stated that the two were not compatible. I know SP3 broke some IPSEC tunnels. For example, Sonicwall will work with
SP2 but not SP3. Good Luck… Steven Zimmerman CIO IR Network Solutions 770-277-9877 x224 770-237-5497 fax -----Original
Message----- Hi, I have been trying for a
while to set up a IPSEC VPN between a VPN-1 4.1 SP3 Check Point firewall and a
Cisco 3030 concentrator. Both ends are set up to
use preshared secret, IKE encryption scheme, DES keys/MD5, data encryption of
DES / ESP and MD5. When sending data from
the Cisco to Checkpoint all is ok, but it does not work the other way. The log
file give me messages in blue of "invalid cookie" and "payload
malformed and then green of "gateway connected to both end points: scheme
IKE" When using the same
parameters between 2 checkpoint firewalls it works fine. I have also tried
3DES without any success. The manual suggests that
these message mean "incompatible firewall". I have been told but
Checkpoint and Cisco that this should work. Does anyone have any
ideas ? Has anyone successfully done it to these Cisco's ? Thanks in advance. David |
- [FW1] Check Point to Cisco 3030 IPSEC VPN Problems - &quo... David Greenwood
- [FW1] Check Point to Cisco 3030 IPSEC VPN Problems -... dave
- Steven Zimmerman
