Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Problem with Contivit y and Certificates from Verisign |
|---|---|
| Date: | Tue, 6 Sep 2005 08:46:35 +0200 |
Hello Cesar, I would check these items, just as a beginning: - Are other similar certificates working, or all of them are failing to authenticate? - Have you established obligatory CRL check in the Contivity server certificate, and if so, is the CRL accessible from the Contivity? - Has the certificate been revoked in the CA? - Is the server certificate in the Contivity enabled? - Have you configured the <certificate DN - Contivity group> mapping? Regards, Rodrigo. On 9/5/05, Cesar Farro Flores <cesar.farro@t-empresas.com.pe> wrote:
Hi List, We have contivity vpn switch 1700 sw V05_00.136 and certificates from CA Verisign, we have a problem in the process of authenticatication. We can see in the log that before this error message, the contivity delivers an IP Address to my user. Then the authentication failure. Does anybody know why this error messages appears in the log : "rejected or aborted connection attempt". We will appreaciate your help. #################################################################### 08/31/2005 11:43:40 0 ISAKMP [02] ISAKMP SA established with mail=jesus@x.com.pe, cn=jesus , ou=organizacion - x, ou=terms of use at www.ace.es/rpa (c)01, ou=csc - class 2, o=xxx.s.a.a. (200.x.x.83) 08/31/2005 11:43:40 0 ISAKMP [13] Error notification (Authentication failure) received from mail=jesus@x.com.pe, cn=jesus, ou=organizacion - x, ou=terms of use at www.ace.es/rpa (c)01, ou=csc - class 2, o=xxx.s.a.a. (200.x.x.83) 08/31/2005 11:43:40 0 ISAKMP [13] mail=jesus@x.com.pe, cn=jesus, ou=organizacion - x, ou=terms of use at www.ace.es/rpa (c)01, ou=csc - class 2, o=xxx.s.a.a. (200.x.x.83) rejected or aborted connection attempt ##################################################################
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: iptables - drop ESTABLISHED connection, Sagiko |
|---|---|
| Next by Date: | Question about high perfomance iptables-based Firewall, Javier Miguel Rodríguez |
| Previous by Thread: | Problem with Contivit y and Certificates from Verisign, Cesar Farro Flores |
| Next by Thread: | Re: Problem with Contivit y and Certificates from Verisign, Cesar Farro Flores |
| Indexes: | [Date] [Thread] [Top] [All Lists] |