Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: Jack McCauley on September 17, 2002, 11:55:21 PM

Title: IPSec VPN client behind SME firewall
Post by: Jack McCauley on September 17, 2002, 11:55:21 PM
We are trying to run an IPSec VPN client from behind the SME server 5.5 firewall, and are not having any luck.  The client we are trying to use is Nortel's Contivity VPN Client.  Has anyone had any luck using an IPSec VPN client from behind the SME firewall?
Title: Re: IPSec VPN client behind SME firewall
Post by: steve on September 18, 2002, 02:13:45 AM
I use Checkpoint's VPN client (SecureRemote..I think it is called) on Win98 behind SME 5.5
No problems.
Title: Re: IPSec VPN client behind SME firewall
Post by: ryan on September 18, 2002, 03:25:21 AM
Jack,

I had problems with Nortel Extranet IPSEC vpn client with SME 5.1.2.  The following is from a posting from this forum.  These commands allow multiple Nortel Extranet connections to pass through 5.1.2.  I don't know if they will work for 5.5, but it is worth a shot.  Please post if this works for you or not.

Commands:

# /sbin/e-smith/db configuration setprop masq ipsec yes
# /sbin/e-smith/signal-event remoteaccess-update

I had to also check 'disable keep alives' on each client or the connection will fail within a few minutes.

Good luck,

ryan
Title: Re: IPSec VPN client behind SME firewall
Post by: Jack McCauley on September 19, 2002, 01:21:53 AM
Ryan;

  Thanks, your solution worked perfectly.
Title: Re: IPSec VPN client behind SME firewall
Post by: Ron Tan on September 23, 2002, 01:02:56 PM
Hi,
Can I know how to setup IPSec in E-smith ?
Regards,
Ron
Title: Re: IPSec VPN client behind SME firewall
Post by: ryan on September 24, 2002, 07:38:09 AM
Ron,

Do a search in here for IPSEC VPN.  That should help if your using 5.1.2 or less.  I have read that 5.5 involves further tweaking beyond the How -  To to get it to work.  

good luck,

ryan
Title: Re: IPSec VPN client behind SME firewall
Post by: Garret on September 26, 2002, 05:11:29 PM
Has anyone gotten past the ipsec issues with 5.5?

Thanks

Garret
Title: Re: IPSec VPN client behind SME firewall
Post by: Doug Necessary on September 27, 2002, 01:02:50 AM
I just tried this behind 5.5 with the Nortel VPN V04_60.51 and it works great.  Did not have to modify the client at all.
Title: Re: IPSec VPN client behind SME firewall
Post by: Ron on September 28, 2002, 07:23:30 PM
Hi,
Are your guy is discussion access e-smith box for road warrior using ipsec ?
I've not seen any article about how to configure e-smith to access ipsec for road warrior, anyone can help ?