DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

2910 to Check Point R75 VPN over Virgin

  • terryj
  • Topic Author
  • Offline
  • New Member
  • New Member
More
02 May 2013 09:14 #1 by terryj
I am trying to setup a VPN Tunnel over a Virgin Media broadband connection. I have a static ip address. I have been told to connect to a specific ip address & port, testing with telnet. I am currently not getting past phase 1 encryption. I would appreciate help with the required settings.

Host:
Firewall: Check Point R75.45
Phase 1 Key Exchange Encryption: AES256
Phase 1 Data Integrity: SHA1
Phase 2 IPSec Data Encryption: AES256
Phase 2 Data Integrity: SHA-1
Phase 1 Timeout 1440 minutes
Phase 1 Diffe-Hellman Group 5
Phase 2 Timeout 3600 seconds

My settings:
Call Direction: Dial-Out
IPSec Tunnel
IP Host Name - host ip address
IPSec Security Method - AES with Authentication
IKE phase 1 mode - Main mode
IKE phase 1 proposal - AES256_SHA1_G5
IKE phase 2 proposal - AES256_SHA1
IKE phase 1 key lifetime - 86400 seconds
IKE phase 2 key lifetime - 3600 seconds
Perfect Forward Secret - Disable
My WAN IP - 0.0.0.0
Remote Gateway IP - 0.0.0.0
Remote Network IP - host ip address
Remote Network Mask - host subnet mask
Local Network IP - 192.168.1.1 (router address)
Local Network Mask - 255.255.255.0

Thank you
Terry Johnston

Please Log in or Create an account to join the conversation.

  • nealuk
  • User
  • User
More
03 May 2013 16:17 #2 by nealuk
Replied by nealuk on topic Re: 2910 to Check Point R75 VPN over Virgin
Syslog really is your friend in getting VPNs going, you can easily diagnose what it doesn't like from the messages. Perhaps add the details in the WAN IP field...

Regards,

Neal.

Please Log in or Create an account to join the conversation.