Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

[Solved] iPhone Remote Access to instance in Amazon EC2

I'm experimenting with configuring Mail Security in the cloud.  Yesterday, I had occasion to connect my iPhone to our physical Astaro with L2TP over IPsec in order to use WebAdmin, so I decided to set up the same capability with my ASG in the cloud...

I can't see a way around the following IP problem with an IPsec-based Remote Access method - can anyone else?
2012:06:26-03:17:47 astaro pluto[5303]: "S_REF_IpsL2t1_1"[1] 166.147.67.206:32967 #1: Peer ID is ID_IPV4_ADDR: '10.140.168.245'

2012:06:26-03:17:47 astaro pluto[5303]: "S_REF_IpsL2t1_1"[2] 166.147.67.206:32967 #1: deleting connection "S_REF_IpsL2t1_1"[1] instance with peer 166.147.67.206 {isakmp=#0/ipsec=#0}
2012:06:26-03:17:47 astaro pluto[5303]: "S_REF_IpsL2t1_1"[2] 166.147.67.206:32967 #1: Dead Peer Detection (RFC 3706) enabled
2012:06:26-03:17:47 astaro pluto[5303]: | NAT-T: new mapping 166.147.67.206:32967/42260)
2012:06:26-03:17:47 astaro pluto[5303]: "S_REF_IpsL2t1_1"[2] 166.147.67.206:42260 #1: sent MR3, ISAKMP SA established
2012:06:26-03:17:48 astaro pluto[5303]: "S_REF_IpsL2t1_1"[2] 166.147.67.206:42260 #1: cannot respond to IPsec SA request because no connection is known for 184.x.y.184/32===10.248.245.51:4500[10.248.245.51]:17/1701...166.147.67.206:42260[10.140.168.245]:17/%any==={10.140.168.245/32}
2012:06:26-03:17:48 astaro pluto[5303]: "S_REF_IpsL2t1_1"[2] 166.147.67.206:42260 #1: sending encrypted notification INVALID_ID_INFORMATION to 166.147.67.206:42260


My first try with PPTP also was fruitless.  I can't figure out how it's possible to VPN from an iPhone to an ASG instance in Amazon EC2 - ideas?

Cheers - Bob
PS The problem was solved in V9.1 with the introduction of support for the OpenVPN app.


This thread was automatically locked due to age.