NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] "Using an inappropriate Policy" Error



Title: RE: [FW-1] "Using an inappropriate Policy" Error

Open policy->properties, select the Desktop Security tab, and de-select "Desktop is enforcing required policy" and "Notify desktop user".  These messages are most likely being generated because your SecuRemote client was installed with desktop security support, but your gateway does not have a policy server configured (desktop security is a licensed and paid add-on).

HTH

Dan Hitchcock
CCNP, CCSE, MCSE
Security Analyst
Breakwater Security Associates, Inc.
"Safe Harbor for E-Business"
dhitchcock (at) breakwatersecurity (dot) com
http://www.breakwatersecurity.com
work

The information contained in this email message may be privileged, confidential and protected from disclosure.  If you are not the intended recipient, any dissemination, distribution or copying is strictly prohibited.  If you think you have received this email message in error, please email the sender at [email protected]


-----Original Message-----
From: Thompson, Jeff [mailto:[email protected]]
Sent: Thursday, December 27, 2001 7:55 AM
To: [email protected]
Subject: Re: [FW-1] "Using an inappropriate Policy" Error


I just set up VPN with IKE and am able to exchange keys ok, but then it says

"User Successfully authenticated by VPN-1.  You are using an inappropriate
policy.  Load a new policy from your Policy Server."


The only VPN rule I have is:

All Users@Any, Firewall, Any, Client Encrypt, ...


Ok, here is our topology

Internet----Router----(66.x.x.x)FW-1(192.168.100.1
NAT)----Servers----Workstations(206.247.71.x)

FW-1 is 4.1 SP5
SecuRemote NG on W2K and SecuRemote 4188 on NT.
SecureClient 4.1 SP-5 DES build 4199

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.