Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security ISSForum
[Top] [All Lists]

[ISSForum] NEWB - M Series VPN question

Subject: [ISSForum] NEWB - M Series VPN question
Date: Thu, 22 Dec 2005 20:08:29 -0500
I am looking for some help.  I am following the documentation regarding
creating VPNs for my WinXP users to the M series appliances.  I keep
running into problems.  

First, I tried the certificate approach.  (Using Microsoft CertSrv) I
installed my CA in the appliance.  I then made a request for a "IPSEC"
certificate from my CertSrv (according to the documentation) and I
installed it onto my machine.  When I configure my vpn in winxp to use
advanced settings I get a "798 - A certificate could not be found that
can be used with this Extensible Authentication Protocol."    I think
the biggest problem here is that the documentation lacks the appropriate
"Configure the Client VPN to utilize the certificate" section.  It says
plainly how to make the certificate, but it doesn't say what to do
afterwards.  (how to configure the VPN connection to use the
certificate) So I gave up on the certificates.  

Second, I tried using MS-CHAP Shared secret.  Awesomely, the
documentation walks how to do this quite well, but for me it doesn't
work. I am getting a "789 - The L2TP connection attempt failed because
the security layer encountered a processing error during initial
negotiations with the remote computer."

My proventia logs say nothing other than accepts and other alerts that I
like to see.  

Any suggestions?  

Thanks,
Fred


_______________________________________________
ISSForum mailing list
ISSForum@iss.net

TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to 
https://atla-mm1.iss.net/mailman/listinfo/issforum

To contact the ISSForum Moderator, send email to mod-issforum@iss.net

The ISSForum mailing list is hosted and managed by Internet Security Systems, 
6303 Barfield Road, Atlanta, Georgia, USA 30328.

<Prev in Thread] Current Thread [Next in Thread>
  • [ISSForum] NEWB - M Series VPN question, Fred Lee <=