[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [FW1] Cable Modems + SecuRemote 4117 and 4115_6



    [ The following text is in the "iso-8859-1" character set. ]
    [ Your display is set for the "US-ASCII" character set. Some ]
    [ characters may be displayed incorrectly. ]


Hi,
 IKE is a new name for ISAKMP/Oakley. Just a name.
If you're using preshared secrets , you should be able to use new SR (I do
it on 9x, NT, 2000) without any problem.
Certificates is a very different issue - I've posted my notes on combination
of SR 4.1 + FW 4.0 + CM 1.0 on this list. In a few words - it's very
unstable. SR 4.1 just don't recognize the FW's certificate...


-----------------------------------------------------------------
Eli Tovbeyn                           eli@xpert.com
 Senior Consultant               +972-9-9522378
  Xpert Trusted Systems   +972-5-3574884




> -----Original Message-----
> From: owner-fw-1-mailinglist@lists.us.checkpoint.com
> [mailto:owner-fw-1-mailinglist@lists.us.checkpoint.com]On Behalf Of Glen
> Sent: Tuesday, October 12, 1999 9:36 PM
> To: fw-1-mailinglist@lists.us.checkpoint.com
> Subject: [FW1] Cable Modems + SecuRemote 4117 and 4115_6
>
>
>
> First off, I'd like to express my deep gratitude to Phoneboy and Lance
> Spitzner for making available an invaluable wealth of information
> regarding
> Firewall-1.  Anytime I have a problem or require a deeper understanding of
> this product, I find myself surfing between Phoneboy's website, Lance
> Spitzner's white papers, this Mailing List, and Checkpoint's newsgroups.
>
> I have 3 questions for anyone who's had the experience:
> ==========================================
> (1.) I noticed that the new SecuRemote client (4117 and 4115_6)
> includes the
> IKE encryption key scheme.  Is this just a different flavor of
> ISAKMP?  I've
> unsuccessfully attempted to access the VPN using this key scheme.
>  FYI: I've
> had no problem with the ISAKMP key scheme in the last version of
> SecuRemote
> *or* FWZ key scheme in the *newest* version of SecuRemote.
>
> (2.) Has anyone had any success using SecuRemote with cable modem,
> specifically @Home in the NorthEast area?  Does anyone know if they use
> (POOL, STATIC, or HIDE) NAT?
>
> (3.) This seems really odd but I'm unable to delete any User
> Templates using
> the Console on NT.  Is this a bug?  Is there a way to do it via
> command-line
> on the back end? (Solaris 2.6)
>
> TIA -- and please keep the information flowing...
>
> Glen Liu
> space.com
> ========
> glen@space.com
>
>
>
> ==================================================================
> ==============
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
> ==================================================================
> ==============
>



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================