IPSec Aggressive mode is not as secure as Main mode [0].
Avoid it if your device(s) support Main mode.

Disabling PFS is another item that isn't ideal, but at times is necessary.

[0] http://www.internet-computer-security.com/VPN-Guide/Aggressive-Mode.html

On Thu, May 21, 2015 at 1:05 PM, Roy, Jerry <[email protected]>
wrote:

> Sorry,
>
> Yes, Ipsec tunnel in aggressive mode. I have main mode working but
> aggressive mode has been trouble. Pfs has been disabled.
>
>
> Jerry Roy 949.681.5054
> [email protected]
>
> _______________________________________________
> Mikrotik mailing list
> [email protected]
> http://mail.butchevans.com/mailman/listinfo/mikrotik
>
> Visit http://blog.butchevans.com/ for tutorials related to Mikrotik
> RouterOS
>



-- 
---~~.~~---
Mike
//  SilverTip257  //
-------------- next part --------------
An HTML attachment was scrubbed...
URL: 
<http://mail.butchevans.com/pipermail/mikrotik/attachments/20150522/8586af33/attachment.html>
_______________________________________________
Mikrotik mailing list
[email protected]
http://mail.butchevans.com/mailman/listinfo/mikrotik

Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS

Reply via email to