Comments
-
Hey all, Issue resolved: The support guy suggested an option, which is kind of the opposite of what you would do when working with connections that are both on Lease Lines, static IP, etc …. Support guys suggested changing the IKE Phase 1 / Exchange: Change it from MAIN MODE , to AGGRESSIVE . How bizarre, did that, and…
-
Sorry, My bad: I was looking at a screenshot i had taken last week when i wrote about the P1 / P2 timings… I have P1 time set to: 28800 (Default) Under IPSEC (Phase 2) , For Life Time, i have: 3600
-
ok…. So set "Life Time" on IPSEC (Phase 2) Proposal, change this to 3600 ?
-
Hiya I have the same settings on both the TZ370 / TZ670 (latest general release firmware) VPN Policy - Proposals IKE Phase 1 Exchange: Main Mode DH Group: Group 14 Encryption: AES-128 Authentication: SHA256 Life Time: 28800 IPSEC Phase 2 Protocol: ESP Encryption: AES-128 Authentication: SHA256 Enable Perfect forward…
-
Cheers Different view in the TZ670 , but same thing.. i didnt realise i need to set the "Logging level" to "inform" , so it records events , and then i can see if users are SSL VPN login and actually doing any work :) :) cheeeeeeeeeeeeeeers