This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Check Point SecureClient from behind Astaro...

Is it or is it not possible to use SecureClient NG from behind an Astaro box?  I can't seem to exchange keys with the firewall.  Ethereal on the same segment shows repeated attempts to speak ESP, but I am getting no response.

Furthermore, the logs don't help because there are none.  The live packet filter doesn't show any traffic dropping.  And for good measure, I opened the ever-popular ANY  ANY to avoid the pitfalls of the non-standard protocols.  Nothing.

Any ideas?


This thread was automatically locked due to age.
Parents
  • You can run SecureClient from behind an Astaro box.

    I assume that you are NATing all of your traffic behind the IP of the firewall.  You will need to enable UDP encapsulation in the SecureClient settings to make the tunnel work.
Reply
  • You can run SecureClient from behind an Astaro box.

    I assume that you are NATing all of your traffic behind the IP of the firewall.  You will need to enable UDP encapsulation in the SecureClient settings to make the tunnel work.
Children
No Data