- when using pre shared secrets it appears that the checkpoint limit is 20 characters (i have just characters nothing fancy like spaces or _ or anything) authby=secret
- don't use perfect forward secrecy pfs=no
- turn off aggressive mode on the checkpoint box
- be sure nat is turned off on the checkpoint box
- be sure your netfilter/iptables is logging rejected packets so you can add rules there if need be
- when using pre shared secrets it appears that the checkpoint limit is 20 characters (i have just characters nothing fancy like spaces or _ or anything) authby=secret
- don't use perfect forward secrecy pfs=no
- turn off aggressive mode on the checkpoint box
- be sure nat is turned off on the checkpoint box
- be sure your netfilter/iptables is logging rejected packets so you can add rules there if need be