Re: IPSEC with pre-shared key VPN setup

From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 06/19/04


Date: Sat, 19 Jun 2004 02:47:14 GMT

Try using ipsecmon to view if the Security Associations are being created or not.
Network access over an ipsec tunnel can be slow and netbios name resolution probably
will not work if it is broadcast instead of wins or lmhosts files. Try accessing a
share using IP address as in \\xxx.xxx.xxx.xxx\sharename. If you are trying to
connect through a router firewall you will need to configure it for ipsec ports as
shown in KB below and look in the firewall logs for dropped traffic from the Linksys
ipsec endpoint router. --- Steve

http://support.microsoft.com/default.aspx?scid=kb%3Ben-us%3B233256
http://support.microsoft.com/default.aspx?scid=kb;en-us;257225 --- ipsec
troubleshooting

"anonymous" <anonymous@discussions.microsoft.com> wrote in message
news:1e7b701c45561$004b2590$a401280a@phx.gbl...
> I am attempting to conenct a Windows 2000 station to a
> Linksys BEFVP41 VPN router using IPSEC with pre-shared
> keys. I have created and assigned the policy, set the
> registry to use the locally defined IPSEC policy which
> specifies the pre-shared key to use, and I can establish a
> link via DOS command line, but cannot establish a link
> through the Network Connections applet. The response I
> get is "There was no answer". I am able to ping the
> internet address of the Linksys box. In DOS, I must first
> manually define a route to the remote network (route add
> <lan address> mask <lan mask> <IP of Linksys WAN port),
> then I can ping addresses in the remote network. The ping
> will show negotiating ipsec security, then will respond
> normally. If I go back to Windows, it will not connect or
> use any remote network services, or see the remote
> network.
>



Relevant Pages

  • Re: Green Admin - Brute Force Attack - Pls Help
    ... Ipsec configuration is very similar [if ... specifics on how to use ipsec "filtering" policy to protect computers. ... is managing a network - particularly one in a hostile environment. ...
    (microsoft.public.security)
  • Re: Malicious Software Removal Tool Errors Reported
    ... chkdsk while the errors are occuring resolves the problem. ... don't know if the IPsec service is running or not. ... IPSec Services: IPSec Services failed to get the complete list of network ...
    (microsoft.public.windowsxp.general)
  • Re: Hey, folks...I do post. How about a net sec technique revisit?
    ... do it in an IP network. ... I never built such a driver, ... I don't believe IPsec gives this kind of behavior. ... (BTW when we used link passwords in the GE DECnet, they seemed to work fine regardless whether the connection was DDCMP or ethernet.) ...
    (comp.os.vms)
  • Re: IPSec / domain isolation: confusing MS documents
    ... workstation, he is able to attach to server ressources again, but for our ... The user right for access this computer from the network ... will not work for computer accounts unless ipsec is being used. ... securing a domain controller. ...
    (microsoft.public.windows.server.security)
  • Re: asp.net
    ... Snap-in selection in the drop menu, ... pop-up messages from network sense telling you that the ... >>One normally sees the IPsec message that you mention ... >>when one network capable interface has not finished its ...
    (microsoft.public.windowsxp.security_admin)

Quantcast