DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
2910 to Check Point R75 VPN over Virgin
- terryj
- Topic Author
- Offline
- New Member
Less
More
- Posts: 1
- Thank you received: 0
02 May 2013 09:14 #76025
by terryj
2910 to Check Point R75 VPN over Virgin was created by terryj
I am trying to setup a VPN Tunnel over a Virgin Media broadband connection. I have a static ip address. I have been told to connect to a specific ip address & port, testing with telnet. I am currently not getting past phase 1 encryption. I would appreciate help with the required settings.
Host:
Firewall: Check Point R75.45
Phase 1 Key Exchange Encryption: AES256
Phase 1 Data Integrity: SHA1
Phase 2 IPSec Data Encryption: AES256
Phase 2 Data Integrity: SHA-1
Phase 1 Timeout 1440 minutes
Phase 1 Diffe-Hellman Group 5
Phase 2 Timeout 3600 seconds
My settings:
Call Direction: Dial-Out
IPSec Tunnel
IP Host Name - host ip address
IPSec Security Method - AES with Authentication
IKE phase 1 mode - Main mode
IKE phase 1 proposal - AES256_SHA1_G5
IKE phase 2 proposal - AES256_SHA1
IKE phase 1 key lifetime - 86400 seconds
IKE phase 2 key lifetime - 3600 seconds
Perfect Forward Secret - Disable
My WAN IP - 0.0.0.0
Remote Gateway IP - 0.0.0.0
Remote Network IP - host ip address
Remote Network Mask - host subnet mask
Local Network IP - 192.168.1.1 (router address)
Local Network Mask - 255.255.255.0
Thank you
Terry Johnston
Host:
Firewall: Check Point R75.45
Phase 1 Key Exchange Encryption: AES256
Phase 1 Data Integrity: SHA1
Phase 2 IPSec Data Encryption: AES256
Phase 2 Data Integrity: SHA-1
Phase 1 Timeout 1440 minutes
Phase 1 Diffe-Hellman Group 5
Phase 2 Timeout 3600 seconds
My settings:
Call Direction: Dial-Out
IPSec Tunnel
IP Host Name - host ip address
IPSec Security Method - AES with Authentication
IKE phase 1 mode - Main mode
IKE phase 1 proposal - AES256_SHA1_G5
IKE phase 2 proposal - AES256_SHA1
IKE phase 1 key lifetime - 86400 seconds
IKE phase 2 key lifetime - 3600 seconds
Perfect Forward Secret - Disable
My WAN IP - 0.0.0.0
Remote Gateway IP - 0.0.0.0
Remote Network IP - host ip address
Remote Network Mask - host subnet mask
Local Network IP - 192.168.1.1 (router address)
Local Network Mask - 255.255.255.0
Thank you
Terry Johnston
Please Log in or Create an account to join the conversation.
- nealuk
- Offline
- Member
Less
More
- Posts: 465
- Thank you received: 0
03 May 2013 16:17 #76044
by nealuk
Replied by nealuk on topic Re: 2910 to Check Point R75 VPN over Virgin
Syslog really is your friend in getting VPNs going, you can easily diagnose what it doesn't like from the messages. Perhaps add the details in the WAN IP field...
Regards,
Neal.
Regards,
Neal.
Please Log in or Create an account to join the conversation.
Moderators: Chris, Sami
Copyright © 2024 DrayTek