NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] Site to Site VPN - IKE- error -"neither source nor destination in my encryption domain"



If you're win2k you'll need to stop the ipsec service and disable, I suspect
your problem is the fw cannot open port 500 which it needs to run the vpn.

:-)

From: Santosh Nair <[email protected]>
Reply-To: Mailing list for discussion of Firewall-1
<[email protected]>
To: [email protected]
Subject: [FW-1] Site to Site VPN - IKE- error -"neither source nor
    destination in              my encryption domain"
Date: Sat, 16 Mar 2002 20:00:03 -0800

I am trying to setup site to site VPN using IKE and shared secret.

I have a Nokia IP71 -4.1 sp2 on one end and WIN2K - 4.1 SP4 on the other
end.I have created all the rules , nats and encryption domain as per the
documentaion.

When I initiate a ping from Net a to Net b - I get a message in the log "
No
response from peer :IKE"

When I initiate a ping from NetB to NetA - I get an error message " neither
source nor destination are in my encryption domain :IKE "

The networks and Rules have been defined as follows :
Net A - is 192.168.120.0 /24
Net B - is 192.168.121.0 /24
Rules :
fw1 fw2 ike accept
fw2 fw1 ike accept
NetA NetB any any encrypt
NetB NetA any any encrypt

Thank you in advance.

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================




_________________________________________________________________
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.