NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] Check Point to Cisco 3030 IPSEC VPN Problems - "invalid cookie"



Hi,

I have been trying for a while to set up a IPSEC VPN between a VPN-1 4.1 SP3 Check Point firewall and a Cisco 3030 concentrator.

Both ends are set up to use preshared secret, IKE encryption scheme, DES keys/MD5, data encryption of DES / ESP and MD5.

When sending data from the Cisco to Checkpoint all is ok, but it does not work the other way. The log file give me messages in blue of "invalid cookie" and "payload malformed and then green of "gateway connected to both end points: scheme IKE"

When using the same parameters between 2 checkpoint firewalls it works fine. I have also tried 3DES without any success.

The manual suggests that these message mean "incompatible firewall". I have been told but Checkpoint and Cisco that this should work.

Does anyone have any ideas ?  Has anyone successfully done it to these Cisco's ?

Thanks in advance.

David



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.