Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
lucascaetano9
Participant

Checkpoint device does not establish VPN tunnel

Jump to solution

Hello all,

 

I am getting issues when trying to configure VPN tunnels in my R77.20. I have tried to connect to ASA, FORTINET and Pfsense as well. As I dont know to much regarding the log of this kind of feature, I would like your help on some advice about this.

 

Are there some directory or folder that I can see evidences or issue of the connection? 

 

Obs: I dont have a blade license to check in monitor and another tools in smartcenter.

2 Solutions

Accepted Solutions
PhoneBoy
Admin
Admin
HeikoAnkenbrand
Champion
Champion

Tip:

- use IKEv1

- use lower DH groups for example  5

- use main mode

- check first with PSK

- check same phase 1 and phase 2 settings

- check supernet issues

- check encryption domains on both sides 

- Update your firewall to a supported version R80.20 with vpn multicore support. R77.20 is out of support😀.

- use „vpn tu“ to check phase 1 and phase 2 

- enable the vpn debug and use the ikeview tool to debug vpn issues

View solution in original post

5 Replies
PhoneBoy
Admin
Admin
lucascaetano9
Participant

The issue Advanced Access is required is being shown even I am logged with my costumer credentials, but anyway, thanks for your recomendation!

0 Kudos
Reply
HeikoAnkenbrand
Champion
Champion

Tip:

- use IKEv1

- use lower DH groups for example  5

- use main mode

- check first with PSK

- check same phase 1 and phase 2 settings

- check supernet issues

- check encryption domains on both sides 

- Update your firewall to a supported version R80.20 with vpn multicore support. R77.20 is out of support😀.

- use „vpn tu“ to check phase 1 and phase 2 

- enable the vpn debug and use the ikeview tool to debug vpn issues

View solution in original post

HeikoAnkenbrand
Champion
Champion

See more -> What is the IKEView utility?

sk30994

HeikoAnkenbrand
Champion
Champion