Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: Checkpoint FW-1 -> Cisco VPN error |
|---|---|
| Date: | Wed, 22 Dec 2004 14:21:53 +1100 |
Sounds like the IPSec proxies don't match. Regards David Taylor -----Original Message----- From: Matthew West [mailto:matthew.west@eds.com] Sent: Wednesday, 22 December 2004 12:17 PM To: firewalls@securityfocus.com Subject: Checkpoint FW-1 -> Cisco VPN error Hi All I am getting a rather cryptic message after a successful IKE handshake between CP FW-1 R55 and Cisco PIX (the PIX has been happily VPN'ing with another PIX). Once the handshake has completed (successfully) and traffic is attempted to be routed the CP firewall denies the traffic stating: encryption failure: Packet was decrypted, but policy says connection should not be decrypted I am using 'simplified mode' VPN configuration and have the external interoperable devices as a part of the VPN star config and do not have the tick box 'allow key exchange for subnets' ticked either in the global properties or the properties of the VPN community. I did find something after googling for the error message but this was resolved by changing settings for MEP's and failover gateways which I do not have in this instance. Any thoughts? Any further info needed? All help much appreciated. Matt ********************************************************************** Please note that your email address is known to AUSTRAC for the purposes of communicating with you. The information transmitted in this e-mail is for the use of the intended recipient only and may contain confidential and/or legally privileged material. If you have received this information in error you must not disseminate, copy or take any action on it and we request that you delete all copies of this transmission together with attachments and notify the sender. This footnote also confirms that this email message has been swept for the presence of computer viruses. **********************************************************************
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | FW: HOTBrick LB2vpn update 2, Chili G. |
|---|---|
| Next by Date: | Re: Checkpoint FW-1 -> Cisco VPN error, Rob Hughes |
| Previous by Thread: | Re: Checkpoint FW-1 -> Cisco VPN error, Rob Hughes |
| Next by Thread: | Re: Checkpoint FW-1 -> Cisco VPN error, Ivan Coric |
| Indexes: | [Date] [Thread] [Top] [All Lists] |