Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Coexistence of Checkpoint SecuRemote and Netscreen VPN clients

Status
Not open for further replies.

nickpark

Programmer
Jan 17, 2002
517
GB
I'm trying to get the Checkpoint SecuRemote and Netscreen VPN clients coexisting.

However, when both are installed, I cannot access my SecuRemote machines. (I can authenticate to the VPN gateway server though!?)

Uninstalling Netscreen, fixes the issue.
 
Think...

Both clients are binding to IKE, ESP and NAT-T, (plus their proprietary NAT-avoidance ports) so how can you expect them both to work at the same time? Compare it to Apache and IIS on the same box listening on port 80 - what happens?
 
Apologies for the earlier causticity - what you need is a solution, I guess.

Both Netscreen and Checkpoint gateways support L2TP over IPSec, so you could ditch both clients and just use the integral W2K/XP VPN client to connect to either firewall, assuming that the admins of the latter are co-operative.

If so, alternatively you could set up the SSL Extender on the Checkpoint box, uninstall SecuRemote, VPN into the CP with SSL and leave the Netscreen client on for IPSec.

HTH
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top