Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Interop with DSL VPN routers?

Hi Gurus,

has anyone done a successful setup with DSL VPN routers (dynamic IP) as Clients for ASL? I tried this weekend with a ZyWall1, and it failed.

Greetings,
Wolfgang


This thread was automatically locked due to age.
  • wjl,

    it works, if your router connects with its external
    address. I made some tests with a bintec router and
    found out that this router provides the initiating
    host address as its tunnel address.

    The tunnel on the firewall has to be defined like

    internal_network
    external_address_of_firewall
    ANY
    remote_network

    regards
    ollion
  • hi there, 

    if you want to hook yp ipsec capable dsl routers make sure they support 3DES in all Phases and are configured that way.

    On the ZyWall you have to use telnet to configure Phase2 using 3DES, the web interface does not set this.

    Kind regards
    Polluxxx