Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

PKI-Error only in IPSEC-VPN (RAS)

Hello again ;-))
Nearly everything is working on my UTM120:
The certbased-secured Site-Site-IPSec-Connection to the main-router (a UTM220), the Cisco-VPN-Connection with an iOS-device and the IPSec-VPN-Connection with a PSK.
So far so good.

Only when I try to establish an certbased-IPSEC-VPN-Connection I get an PKI-Error on the IPSEC-Client.
But I don't know why?
I've appended the log from the dial-in-attempt.

Do you have any hints for me?

Thanks in advance… Jochen


This thread was automatically locked due to age.
IPSec-Log.zip
Parents
  • No, no user can use remoteaccess with certificates,
    The iOS-Device for the user "jochen" is able to connect.
    I just created an new user with a new certificate containing a mailadress name@dyndnsdomain-of the-UTM.info that works with iOS-device(Cisco-Client, but not with the IPSEC-Client.
    I tested two different windows-machines. Both are able to connect to the other UTM220 (over a third network with different IP-range), but not to the UTM120.
    Any ideas? ;-))
    Thanks... Jochen
Reply
  • No, no user can use remoteaccess with certificates,
    The iOS-Device for the user "jochen" is able to connect.
    I just created an new user with a new certificate containing a mailadress name@dyndnsdomain-of the-UTM.info that works with iOS-device(Cisco-Client, but not with the IPSEC-Client.
    I tested two different windows-machines. Both are able to connect to the other UTM220 (over a third network with different IP-range), but not to the UTM120.
    Any ideas? ;-))
    Thanks... Jochen
Children
No Data