Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Configuring IPSEC tunnels using VPN Communities with openbsd

Status
Not open for further replies.

mbartsch

ISP
Jul 10, 2002
12
CL
Hello,
Does anyone has configured a Checkpoint NG FP3, to connect via ipsec two networks against an OpenBSD 3.2? i can make openbsd and checkpoint to connect , but when is time to pass traffic between both networks i got the following errors on the Checkpoing LOG


23Dec2002 18:35:36 drop 200.29.XX.AAAA >hme0 product: VPN-1 & FireWall-1; src: 10.20.30.1; dst: CCC.DDD.EEE.FF; proto: icmp; icmp-type: 8; icmp-code: 0; scheme: IKE; dstkeyid: 0x7136d1c0; methods: ESP: 3DES + MD5; peer gateway: 200.HH.JJ.KK; encryption failure: Different community ID, possible NAT problem;

Any ideas where can i start looking for a solution?
 
Mbartsch,

Did you ever resolve this problem, am getting the same error. I get the vpn connection, but am getting the same error trying to pass traffic between the two network. But I only get it when I have NAT on one of the client am trying to connect to, I need to nat(same network IP scheme). Without the Nat it works fine.
Am running Checkpoint NF FP3

Thanks for any input.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top