[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [FW1] Cable Modems + SecuRemote 4117 and 4115_6
[ The following text is in the "iso-8859-1" character set. ]
[ Your display is set for the "US-ASCII" character set. Some ]
[ characters may be displayed incorrectly. ]
Hi,
IKE is a new name for ISAKMP/Oakley. Just a name.
If you're using preshared secrets , you should be able to use new SR (I do
it on 9x, NT, 2000) without any problem.
Certificates is a very different issue - I've posted my notes on combination
of SR 4.1 + FW 4.0 + CM 1.0 on this list. In a few words - it's very
unstable. SR 4.1 just don't recognize the FW's certificate...
-----------------------------------------------------------------
Eli Tovbeyn eli@xpert.com
Senior Consultant +972-9-9522378
Xpert Trusted Systems +972-5-3574884
> -----Original Message-----
> From: owner-fw-1-mailinglist@lists.us.checkpoint.com
> [mailto:owner-fw-1-mailinglist@lists.us.checkpoint.com]On Behalf Of Glen
> Sent: Tuesday, October 12, 1999 9:36 PM
> To: fw-1-mailinglist@lists.us.checkpoint.com
> Subject: [FW1] Cable Modems + SecuRemote 4117 and 4115_6
>
>
>
> First off, I'd like to express my deep gratitude to Phoneboy and Lance
> Spitzner for making available an invaluable wealth of information
> regarding
> Firewall-1. Anytime I have a problem or require a deeper understanding of
> this product, I find myself surfing between Phoneboy's website, Lance
> Spitzner's white papers, this Mailing List, and Checkpoint's newsgroups.
>
> I have 3 questions for anyone who's had the experience:
> ==========================================
> (1.) I noticed that the new SecuRemote client (4117 and 4115_6)
> includes the
> IKE encryption key scheme. Is this just a different flavor of
> ISAKMP? I've
> unsuccessfully attempted to access the VPN using this key scheme.
> FYI: I've
> had no problem with the ISAKMP key scheme in the last version of
> SecuRemote
> *or* FWZ key scheme in the *newest* version of SecuRemote.
>
> (2.) Has anyone had any success using SecuRemote with cable modem,
> specifically @Home in the NorthEast area? Does anyone know if they use
> (POOL, STATIC, or HIDE) NAT?
>
> (3.) This seems really odd but I'm unable to delete any User
> Templates using
> the Console on NT. Is this a bug? Is there a way to do it via
> command-line
> on the back end? (Solaris 2.6)
>
> TIA -- and please keep the information flowing...
>
> Glen Liu
> space.com
> ========
> glen@space.com
>
>
>
> ==================================================================
> ==============
> To unsubscribe from this mailing list, please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> ==================================================================
> ==============
>
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================