Ralf, thanks for your help. > > I have gone through Nate's procedure several times trying to get this > > working, and consequently, I have loaded several wpower.p12 certs on the > > Windows client. Currently there is only one .p12 file on the > > Windows client, and I have deleted all previous certs under MMC's > > Certificates\Personal\Certificates -- is this sufficient to > > ensure that the correct wpower.p12 is being used? > > I would assume so, although it almost seems not to be the case. Are you > sure you have left the correct certs in the database? You need two > certificates: One trusted (the CA) and one personal (winpower).
Please elaborate/clarify this last statement -- does the CA need to be on the Windows client? > Could you post the Oakley.log? Barf: http://jamesthornton.com/stuff/vpn/barf.txt Oakley log: http://jamesthornton.com/stuff/vpn/oakley.txt