[Date Prev][Date Next][Thread Prev][Thread Next][Thread Index]

Re: [fw1-gurus] Clients behind a Enforcement Module can't not establish a PPTP VPN connection to Win2K3 VPN server behind other Enforcement Module



HFA's are cumulative - ie. HFA12 includes all fixes from previous HFA's. You can find a complete list of fixes in the release notes for the newest HFA - currently HFA12.

As previously stated your issue is most likely tied to HFA10 fix 13. This fix requires quite a lot of manual work - ie. it is not enough just to install the HFA. The steps are clearly documented in the release notes.

Please verify that you have followed the detailed instructions in the release notes.

Regards,
Nicolai

shinbe@xxxxxxxxx wrote:

Hi all,
I've create a lab as following:
MyPC(192.168.1.150 hide-nated behind gateway)
	|
	|
	|
MyFirewallInt(192.168.1.175)
MyFirewall(203.113.130.157)
	|
	|
	|
PartnerFWExt(203.113.130.155)
PartnerFWInt(192.168.0.5)
	|
	|
	|
VPNServer(192.168.0.10 static-nated to 203.113.130.153)

1) Dial-up PC can connect success to VPNServer(203.113.130.153). 2) MyPC can't connnect to VPNServer. Connection still stop at "Verify
username and password"
3) Both firewalls are NG R55 hotfix 12
I didn't find hotfix 10 in Check Point site
In SmartTracker:
1) Connect from 203.113.130.157 to 203.113.130.153 service pptp-tcp
2) Connect from 192.168.1.150 to 203.113.130.153 service gre(IP47)
I think that after "verify and pwd" phase, VPNServer will try to connect to
local IP of MyPC(192.168.1.150) thus connection can't establish
Have you got any advices

-----Original Message-----
From: Nicolai Andersen [mailto:fw1-wizards@xxxxxxxx] Sent: Wednesday, December 29, 2004 12:50 AM
To: shinbe@xxxxxxxxx
Cc: fw1-gurus@xxxxxxxxxxxxxxxxxx
Subject: Re: [fw1-gurus] Clients behind a Enforcement Module can't not
establish a PPTP VPN connection to Win2K3 VPN server behind other
Enforcement Module

Please check the latest HFA release notes. Your issue is most likely resolved in HFA10 for R55 (fix R55_10-13).

Regards,
Nicolai Andersen

shinbe@xxxxxxxxx wrote:

Hi gurus,
My customer has a Win2k3 VPN server that static-nated through a NG FP3
firewall.
My PC is hide-nated behind a NG R55 firewall. It can't establish a PPTP VPN
connection to the VPN Server
The connection stop at "verify username and password" step. Security policy
was "any any accept" on both firewalls
I've tried static-nated my PC but nothing better.
As sk12234, it should be OK. I don't know why.
Have you got any hints for me
Thank you





---------------------------------------------------------------------
FireWall-1 Gurus Mailing List (http://www.phoneboy.com/gurus)
To unsubscribe, mailto:fw1-gurus-unsubscribe@xxxxxxxxxxxxxxxxxx
For additional commands, mailto:fw1-gurus-help@xxxxxxxxxxxxxxxxxx