Personal VPN compatability and recommendation

Hi, I would like to use a personal VPN service (similar to WiTopia http://www.witopia.net/personalmore.html).
If I buy a personal VPN service, can I put the settings in Airport Extreme and have all my computers secured through VPN?
Do you have any recommendations for VPN services ?
Thanks,

After the Genius Bar guys at our Hamburg Apple Store had given up on this issue, I finally solved the problem - my VPN is up and running!
After re-installing both OS X Lion and Lion Server several times I realized that certain settings (apparently also for the VPN server) are kept  in the invisble recovery partition that Lion installed on my Mac Mini  (e.g., 'com.apple.RemoteAccessServers.plist'). They even survived a reformatting of the hard drive. Something must have gone wrong the first time I tried to set up the VPN server and the "sudo serveradmin settings vpn" command revealed that the settings survived every re-installation.
Therefore, I physically removed the hard drive and formatted it using a different Mac running Snow Leopard.
It is important not only to erase the disk but also to partition it. This might even work under Lion without having to remove the drive...
After another re-installation of OS X Lion on the clean drive over the Internet from Apple's server (pressing the command-R keys while rebooting) I did a system update and subsequently installed the Server app.
After that I was able to start the VPN server from the Server app.
Inside my local network it was then possible to connect to the VPN server from an iPad 2 (iOS 4.3.5) and from an old Powerbook G4 (Leopard), but not from a MacBook Pro with Snow Leopard.
However, all clients were able to make an external connection through my Deutsche Telekom Router (SpeedPort 722V) with forwarding of ports 1701 (UDP), 500 (UDP) and 4500 (UDP) and enabled GRE and ESP protocols.
For the sake of security I have disabled (closed) all arbitrary ports of the server's own firewall while it's local network ports (192.168.x.y) are all open to enable any internal connections.
It is a serious restriction, however, that the Lion Server only offers the L2TP VPN protocol. Maybe the commercial iVPN solution is an acceptable workaround: http://macserve.org.uk/.
Regards, Björn

Similar Messages

  • I would like to put Dreamweaver 8 on a new computer.  There is no "deactivate" function and the technical support person I chatted with recommended I come here.  Can I just use the serial number again?  How can I deactive?  Has anyone else run into this?

      There is no "deactivate" function and the technical support person I chatted with recommended I come here.  Can I just use the serial number again?  How can I deactive?  Has anyone else run into this?  How can I get Dreamweaver 8, which is no longer being activated by Adobe, on a new computer?  Is it even worth doing or do I need to get a new version.  What are the killer features I'm missing?

    If you manage to get it installed on your current OS, don't forget to install the 8.02 update.
    Adobe - Dreamweaver Support Center : Updaters
    Nancy O.

  • VPN concentrator and webVPN

    Hi,
    Trying to setup VPNc 3005 for WebVPN.
    The VPNc is configured with NTP server so
    the clock is fine. I installed SSL vpn
    client and SecureDesktop software onto the VPNc. Create a local account and
    group. When I perform https://vpnc/admin.html, I can manage the
    VPNc from the external interface so the
    certificate is good.
    When I do http://vpnc from the same XP Service Pack 2 workstation, it attemped
    to install both ssl vpn client and secure desktop onto my winXP, I have admin privilege on the XP machine, then
    it tells me that the vpn concentrator
    has a server certificate error. I've
    attached the screen shot. Anyone know
    what it is? Thanks.

    If you connect to a website that loads content (such as images) from a second, previously unauthenticated server, the content might not be rendered correctly. WebVPN clientless mode does not support websites that require authentication for access to content from secondary servers. When using WebVPN with NAT-T, do not set the NAT-T port to 443. We recommend using port 80 for NAT-T, as firewalls should allow this.
    http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_41/configuration/guide/webvpnap.html
    http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_41/quick/start/gs3mgr.html#wp1302684

  • Personal hotspot missing and music volume not working and lots of other problem after updated 4s to ios8 ? Apple disappointed this time badly.

    Personal hotspot missing and music volume not working and lots of other problem after updated 4s to ios8 ? Apple disappointed this time badly.

    GO to Setting > Cellar Data > VPN Settings > Add any user and password under Personal Hotspot, then you will see it's activated again as usual

  • Can you rename the Personal Address Book and the Collected Address Book?

    I would like to rename my Personal Address Book and my Collected Address Book for aesthetic reasons - is it possible and how do you do it?

    You can rename them but it is not recommended. What purpose is served by renaming the default books? You can create new books and name them anything you like.

  • WatchGuard Mobile VPN Uninstall and Windows 10 = Sadness

    Rob6454 wrote:
    maybe someone else out there can give me an idea as to how to ditch the old mobile VPN client and/or confirm any issues with the SSL client(11.9.1) and windows 10.At this point, maybe you should try it out and let us know how it goes.

    So like many I took my machine and upgraded from Windows 7 to 10 the other day. At the time I still had the older WatchGuard Mobile VPN (ipsec) software installed. It was still there after the upgrade so foolishly I assumed all was well. I went to connect the other day and clearly it was having issues NCPMON.exe. After playing with some compatibility mode settings I got passed that and it let me know that it was "For Windows Vista and Windows XP 64 Bit the license key must be at least 9.0!" - neat. Whatever, no biggie, I installed the shrew soft client and things went fine there. So time to uninstall the old Mobile VPN software right? Nope, that was bad. It appeared to uninstall just fine, however on reboot both my LAN adapter and wireless adapter ceased to function. They showed in the device manager and in Control Panel\Network and...
    This topic first appeared in the Spiceworks Community

  • My router does vpn passthrough and is set up correctly. Does it also have to host the vpn?

    my router does vpn passthrough and is set up correctly. Does it also have to host the vpn?
    Thanks
    Greg

    Not sure I understand your question or problem, but I'll give it a shot.
    No, you do not have to host the VPN server on your router.  That wouldn't do you any good for working around the limitations of the VZW network anyways since you are still on the same VZW network.  When you setup a VPN you normally want it to be on someone else's network so you can enable things like port forwarding and remote access.
    The VPN Passthrough feature only allows your VPN clients to access VPN servers, its not the same thing as hosting.  If you want your router to auto connect to a VPN server (which is more common) that is something different.  VPN clients connect to VPN servers.  VPN clients are normally installed on your personal devices or your router.  VPN servers are geographically located somewhere else and on someone else's network.

  • Final Cut Studio 2: Requirements and Recommendations

    Hello Final Cut Studio 2 Experts,
    I'm considering purchasing Final Cut Studi 2, and to make sure that I'll benefit from the full range of specific application (FCS/motion/color...) and I'd like to ask few questions (5 main points) regarding requirements and recommendations. So, please be prepared for much reading as I am not an expert on the matter. I like to know if my computer accepts any further hardware parts highly recommended and if I can purchase and install them myself. And yes, you should also know that I intend to use a Panasonic multi-format (HD/SD) camera for capturing and exporting videos.
    N.B. Please note that the full list of my Hardware contents appear at the bottom of this text.
    THANKS IN ADVANCE for your expert advise!
    So, here we go:
    Application-Specific Requirements
    Final Cut Studio
    Capturing HD resolution video using the ProRes 422 format requires a Mac Pro with an Intel Xeon processor or a G5 Quad computer and a qualified third-party capture card.
    1) Do I need an Intel Xeon processor? If yes, can I purchase and install the component by myself (like RAM)?
    Motion
    The standard graphics card in any Mac Pro, MacBook Pro, iMac with Intel Core Duo, Power Mac G5, or iMac G5; 1.25GHz or faster PowerBook G4; or 1.25GHz or faster flat-panel iMac:
    ATI Radeon 9800, 9700 Pro, 9600 XT, or 9600 Pro
    ATI Mobility Radeon 9700 or 9600
    NVIDIA GeForce 7600 GT, 7300 GT, 6600, 6600 LE, FX Go5200, or FX 5200 Ultra
    For 16- and 32-bit rendering: a graphics card with at least 128MB of VRAM
    2) Do I need one of the ATI Radeon 9800, 9700... or ATI Mobility Radeon? Why does my Hardware contents say ATI Radeon 9600, and not ATI Mobility Radeon 9600, is there a difference?
    Color
    The standard graphics card in any Mac Pro, 17-inch MacBook Pro, 24-inch iMac with Intel Core Duo, or 2.5GHz or faster Power Mac G5 Quad:
    ATI Mobility Radeon X1600
    ATI Radeon X1600
    NVIDIA GeForce 7800 GT, 7600 GT, 7300 GT, 6600, or Quadro FX 4500
    A display with 1680-by-1050 resolution or higher
    A three-button mouse for full functionality
    3) Do I need and ATI Mobility Radeon X1600 or ATI Radeon X1600?
    DVD Studio Pro
    For playback of DVD Studio Pro 4-authored HD DVDs: a Macintosh computer with a PowerPC G5 or Intel Core Duo processor
    For writing finished projects to disc: an Apple SuperDrive or other DVD recorder
    For writing finished projects to a double-layer disc: a double-layer-compatible recorder and double-layer media
    For transporting HD projects to a replicator: an external drive or Internet transfer of the project’s disk image
    For transporting SD projects that contain copy-protection or dual-layer features to a replicator: a DLT drive, external drive, or Internet transfer of the project’s disk image
    4) Do I have an Intel Core Duo processor? Do I need an Apple SuperDrive?
    What is a "replicator"?
    Application-Specific Recommendations
    Motion
    One of the following graphics cards is highly recommended:
    ATI Radeon X1900 XT, X850 XT, X800 XT, or X1600
    NVIDIA GeForce 7800 GT, 6800 Ultra DDL, 6800 GT DDL, or Quadro FX 4500
    For 32-bit rendering: a graphics card with 256MB of VRAM or more
    Color
    The following graphics card is highly recommended:
    ATI Radeon X1900 XT
    Dual displays with 1920-by-1200 or higher resolution
    5) Do I have one of the highly recommended cards ATI Radeon X1900 XT etc...? How do I get it and can I install it myself?
    My Power Mac G5 HARDWARE CONTENTS:
    Hardware Overview:
    Machine Name: Power Mac G5
    Machine Model: PowerMac7,3
    CPU Type: PowerPC G5 (3.0)
    Number Of CPUs: 2
    CPU Speed: 2.3 GHz
    L2 Cache (per CPU): 512 KB
    Memory: 4.5 GB
    Bus Speed: 1.15 GHz
    Boot ROM Version: 5.2.4f1
    Serial Number: G85167AGRU3
    ATA Bus:
    SONY DVD RW DW-Q28A:
    Model: SONY DVD RW DW-Q28A
    Revision: KAS7
    Serial Number:
    Detachable Drive: No
    Protocol: ATAPI
    Unit Number: 0
    Socket Type: Internal
    SONY DVD RW DW-Q28A:
    Model: SONY DVD RW DW-Q28A
    Revision: KAS7
    Serial Number:
    Detachable Drive: No
    Protocol: ATAPI
    Unit Number: 0
    Socket Type: Internal
    Built In Sound Card:
    Devices:
    Texas Instruments TAS3004:
    Inputs and Outputs:
    Line Level Input:
    Controls: Left, Right
    Playthrough: No
    PluginID: TAS
    Headphones:
    Controls: Mute, Left, Right
    PluginID: TAS
    Internal Speakers:
    Controls: Mute, Master
    PluginID: TAS
    Line Level Output:
    Controls: Mute, Left, Right
    PluginID: TAS
    Crystal Semiconductor CS84xx:
    Inputs and Outputs:
    S/PDIF Digital Input:
    Controls: Mute
    Playthrough: No
    PluginID: Topaz
    S/PDIF Digital Output:
    Controls: Mute
    PluginID: Topaz
    Formats:
    PCM 16:
    Bit Depth: 16
    Bit Width: 16
    Channels: 2
    Mixable: Yes
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    PCM 24:
    Bit Depth: 24
    Bit Width: 32
    Channels: 2
    Mixable: Yes
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    AC3 16:
    Bit Depth: 16
    Bit Width: 16
    Channels: 2
    Mixable: No
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    Bluetooth: No Information Found.
    SONY DVD RW DW-Q28A:
    Firmware Revision: KAS7
    Interconnect: ATAPI
    Burn Support: Yes (Apple Shipped/Supported)
    Cache: 2048 KB
    Reads DVD: Yes
    CD-Write: -R, -RW
    DVD-Write: -R, -RW, +R, +RW, +R DL
    Burn Underrun Protection CD: Yes
    Burn Underrun Protection DVD: Yes
    Write Strategies: CD-TAO, CD-SAO, CD-Raw, DVD-DAO
    Media: No
    Fibre Channel: No Information Found.
    FireWire Bus:
    Maximum Speed: Up to 800 Mb/sec
    ATI Radeon 9600:
    Chipset Model: ATY,RV351
    Type: Display
    Bus: AGP
    Slot: SLOT-1
    VRAM (Total): 128 MB
    Vendor: ATI (0x1002)
    Device ID: 0x4150
    Revision ID: 0x0000
    ROM Revision: 113-A58504-113
    Displays:
    Cinema HD Display:
    Display Type: LCD
    Resolution: 1920 x 1200
    Depth: 32-bit Color
    Core Image: Supported
    Main Display: Yes
    Mirror: Off
    Online: Yes
    Quartz Extreme: Supported
    Rotation: Supported
    Display:
    Status: No display connected
    DIMM0/J11:
    Size: 256 MB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM1/J12:
    Size: 256 MB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM2/J13:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM3/J14:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM4/J41:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM5/J42:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM6/J43:
    Size: Empty
    Type: Empty
    Speed: Empty
    Status: Empty
    DIMM7/J44:
    Size: Empty
    Type: Empty
    Speed: Empty
    Status: Empty
    PC Cards: No Information Found.
    PCI Cards: No Information Found.
    Parallel SCSI: No Information Found.
    System Power Settings:
    AC Power:
    System Sleep Timer (Minutes): 0
    Disk Sleep Timer (Minutes): 0
    Display Sleep Timer (Minutes): 0
    Dynamic Power Step: No
    Reduce Processor Speed: No
    Sleep On Power Button: Yes
    Automatic Restart On Power Loss: No
    Wake On AC Change: No
    Wake On LAN: No
    Wake On Modem Ring: No
    Adobe PDF 7.0:
    Status: Idle
    Print Server: Local
    Driver Version: 10.4
    Default: No
    URI: pdf700://distiller/
    PPD: Adobe PDF 3016.102
    PPD File Version: 1.0
    PostScript Version: (3016.102) 0
    hp LaserJet 1012:
    Status: Idle
    Print Server: Local
    Driver Version: 1.4.5
    Default: Yes
    URI: usb://Hewlett-Packard/hp LaserJet 1012?serial=00CNFB638356
    PPD: hp LaserJet 1012
    PPD File Version: 1.0
    PostScript Version: (3011.104) 0
    Serial-ATA Bus:
    Maxtor 6B250S0:
    Capacity: 233.76 GB
    Model: Maxtor 6B250S0
    Revision: BANC1E50
    Serial Number: B61QB0RH
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk1
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "A (upper)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Macintosh HD:
    Capacity: 233.64 GB
    Available: 50.02 GB
    Writable: Yes
    File System: Journaled HFS+
    BSD Name: disk1s3
    Mount Point: /
    Maxtor 6B250S0:
    Capacity: 233.76 GB
    Model: Maxtor 6B250S0
    Revision: BANC1E50
    Serial Number: B61QB0RH
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk1
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "A (upper)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Macintosh HD:
    Capacity: 233.64 GB
    Available: 50.02 GB
    Writable: Yes
    File System: Journaled HFS+
    BSD Name: disk1s3
    Mount Point: /
    Serial-ATA Bus:
    Maxtor 7L300S0:
    Capacity: 279.48 GB
    Model: Maxtor 7L300S0
    Revision: BANC1E00
    Serial Number: L602X73H
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk0
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "B (lower)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Primo Volume:
    Capacity: 279.36 GB
    Available: 154.23 GB
    Writable: Yes
    File System: HFS+
    BSD Name: disk0s3
    Mount Point: /Volumes/Primo Volume
    Maxtor 7L300S0:
    Capacity: 279.48 GB
    Model: Maxtor 7L300S0
    Revision: BANC1E00
    Serial Number: L602X73H
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk0
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "B (lower)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Primo Volume:
    Capacity: 279.36 GB
    Available: 154.23 GB
    Writable: Yes
    File System: HFS+
    BSD Name: disk0s3
    Mount Point: /Volumes/Primo Volume
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0035
    PCI Revision ID: 0x0043
    PCI Vendor ID: 0x1033
    Bus Number: 0x2b
    Hub in Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x1003
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Hub in Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x1003
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0035
    PCI Revision ID: 0x0043
    PCI Vendor ID: 0x1033
    Bus Number: 0x0b
    hp LaserJet 1012:
    Version: 1.00
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Hewlett-Packard
    Product ID: 0x0d17
    Serial Number: 00CNFB638356
    Vendor ID: 0x03f0
    hp LaserJet 1012:
    Version: 1.00
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Hewlett-Packard
    Product ID: 0x0d17
    Serial Number: 00CNFB638356
    Vendor ID: 0x03f0
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0040
    PCI Revision ID: 0x0001
    PCI Vendor ID: 0x106b
    Bus Number: 0x09
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0040
    PCI Revision ID: 0x0001
    PCI Vendor ID: 0x106b
    Bus Number: 0x08
    USB High-Speed Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBEHCI
    PCI Device ID: 0x00e0
    PCI Revision ID: 0x0004
    PCI Vendor ID: 0x1033
    Bus Number: 0x4b

    SORRY, BUT MY PREVIOUS POSTING DIDN'T HAVE THE FULL LIST OF HARDWARE CONTENTS of my Power Mac G5.
    Hello Final Cut Studio 2 Experts,
    I'm considering purchasing Final Cut Studi 2, and to make sure that I'll benefit from the full range of specific application (FCS/motion/color...) and I'd like to ask few questions (5 main points) regarding requirements and recommendations. So, please be prepared for much reading as I am not an expert on the matter. I like to know if my computer accepts any further hardware parts highly recommended and if I can purchase and install them myself. And yes, you should also know that I intend to use a Panasonic multi-format (HD/SD) camera for capturing and exporting videos.
    N.B. Please note that the full list of my Hardware contents appear at the bottom of this text.
    THANKS IN ADVANCE for your expert advise!
    So, here we go:
    Application-Specific Requirements
    Final Cut Studio
    Capturing HD resolution video using the ProRes 422 format requires a Mac Pro with an Intel Xeon processor or a G5 Quad computer and a qualified third-party capture card.
    1) Do I need an Intel Xeon processor? If yes, can I purchase and install the component by myself (like RAM)?
    Motion
    The standard graphics card in any Mac Pro, MacBook Pro, iMac with Intel Core Duo, Power Mac G5, or iMac G5; 1.25GHz or faster PowerBook G4; or 1.25GHz or faster flat-panel iMac:
    ATI Radeon 9800, 9700 Pro, 9600 XT, or 9600 Pro
    ATI Mobility Radeon 9700 or 9600
    NVIDIA GeForce 7600 GT, 7300 GT, 6600, 6600 LE, FX Go5200, or FX 5200 Ultra
    For 16- and 32-bit rendering: a graphics card with at least 128MB of VRAM
    2) Do I need one of the ATI Radeon 9800, 9700... or ATI Mobility Radeon? Why does my Hardware contents say ATI Radeon 9600, and not ATI Mobility Radeon 9600, is there a difference?
    Color
    The standard graphics card in any Mac Pro, 17-inch MacBook Pro, 24-inch iMac with Intel Core Duo, or 2.5GHz or faster Power Mac G5 Quad:
    ATI Mobility Radeon X1600
    ATI Radeon X1600
    NVIDIA GeForce 7800 GT, 7600 GT, 7300 GT, 6600, or Quadro FX 4500
    A display with 1680-by-1050 resolution or higher
    A three-button mouse for full functionality
    3) Do I need and ATI Mobility Radeon X1600 or ATI Radeon X1600?
    DVD Studio Pro
    For playback of DVD Studio Pro 4-authored HD DVDs: a Macintosh computer with a PowerPC G5 or Intel Core Duo processor
    For writing finished projects to disc: an Apple SuperDrive or other DVD recorder
    For writing finished projects to a double-layer disc: a double-layer-compatible recorder and double-layer media
    For transporting HD projects to a replicator: an external drive or Internet transfer of the project’s disk image
    For transporting SD projects that contain copy-protection or dual-layer features to a replicator: a DLT drive, external drive, or Internet transfer of the project’s disk image
    4) Do I have an Intel Core Duo processor? Do I need an Apple SuperDrive?
    What is a "replicator"?
    Application-Specific Recommendations
    Motion
    One of the following graphics cards is highly recommended:
    ATI Radeon X1900 XT, X850 XT, X800 XT, or X1600
    NVIDIA GeForce 7800 GT, 6800 Ultra DDL, 6800 GT DDL, or Quadro FX 4500
    For 32-bit rendering: a graphics card with 256MB of VRAM or more
    Color
    The following graphics card is highly recommended:
    ATI Radeon X1900 XT
    Dual displays with 1920-by-1200 or higher resolution
    5) Do I have one of the highly recommended cards ATI Radeon X1900 XT etc...? How do I get it and can I install it myself?
    My Power Mac G5 HARDWARE CONTENTS:
    Hardware Overview:
    Machine Name: Power Mac G5
    Machine Model: PowerMac7,3
    CPU Type: PowerPC G5 (3.0)
    Number Of CPUs: 2
    CPU Speed: 2.3 GHz
    L2 Cache (per CPU): 512 KB
    Memory: 4.5 GB
    Bus Speed: 1.15 GHz
    Boot ROM Version: 5.2.4f1
    Serial Number: G85167AGRU3
    ATA Bus:
    SONY DVD RW DW-Q28A:
    Model: SONY DVD RW DW-Q28A
    Revision: KAS7
    Serial Number:
    Detachable Drive: No
    Protocol: ATAPI
    Unit Number: 0
    Socket Type: Internal
    SONY DVD RW DW-Q28A:
    Model: SONY DVD RW DW-Q28A
    Revision: KAS7
    Serial Number:
    Detachable Drive: No
    Protocol: ATAPI
    Unit Number: 0
    Socket Type: Internal
    Built In Sound Card:
    Devices:
    Texas Instruments TAS3004:
    Inputs and Outputs:
    Line Level Input:
    Controls: Left, Right
    Playthrough: No
    PluginID: TAS
    Headphones:
    Controls: Mute, Left, Right
    PluginID: TAS
    Internal Speakers:
    Controls: Mute, Master
    PluginID: TAS
    Line Level Output:
    Controls: Mute, Left, Right
    PluginID: TAS
    Crystal Semiconductor CS84xx:
    Inputs and Outputs:
    S/PDIF Digital Input:
    Controls: Mute
    Playthrough: No
    PluginID: Topaz
    S/PDIF Digital Output:
    Controls: Mute
    PluginID: Topaz
    Formats:
    PCM 16:
    Bit Depth: 16
    Bit Width: 16
    Channels: 2
    Mixable: Yes
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    PCM 24:
    Bit Depth: 24
    Bit Width: 32
    Channels: 2
    Mixable: Yes
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    AC3 16:
    Bit Depth: 16
    Bit Width: 16
    Channels: 2
    Mixable: No
    Sample Rates: 32 KHz, 44.1 KHz, 48 KHz
    Bluetooth: No Information Found.
    SONY DVD RW DW-Q28A:
    Firmware Revision: KAS7
    Interconnect: ATAPI
    Burn Support: Yes (Apple Shipped/Supported)
    Cache: 2048 KB
    Reads DVD: Yes
    CD-Write: -R, -RW
    DVD-Write: -R, -RW, +R, +RW, +R DL
    Burn Underrun Protection CD: Yes
    Burn Underrun Protection DVD: Yes
    Write Strategies: CD-TAO, CD-SAO, CD-Raw, DVD-DAO
    Media: No
    Fibre Channel: No Information Found.
    FireWire Bus:
    Maximum Speed: Up to 800 Mb/sec
    ATI Radeon 9600:
    Chipset Model: ATY,RV351
    Type: Display
    Bus: AGP
    Slot: SLOT-1
    VRAM (Total): 128 MB
    Vendor: ATI (0x1002)
    Device ID: 0x4150
    Revision ID: 0x0000
    ROM Revision: 113-A58504-113
    Displays:
    Cinema HD Display:
    Display Type: LCD
    Resolution: 1920 x 1200
    Depth: 32-bit Color
    Core Image: Supported
    Main Display: Yes
    Mirror: Off
    Online: Yes
    Quartz Extreme: Supported
    Rotation: Supported
    Display:
    Status: No display connected
    DIMM0/J11:
    Size: 256 MB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM1/J12:
    Size: 256 MB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM2/J13:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM3/J14:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM4/J41:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM5/J42:
    Size: 1 GB
    Type: DDR SDRAM
    Speed: PC3200U-30330
    Status: OK
    DIMM6/J43:
    Size: Empty
    Type: Empty
    Speed: Empty
    Status: Empty
    DIMM7/J44:
    Size: Empty
    Type: Empty
    Speed: Empty
    Status: Empty
    PC Cards: No Information Found.
    PCI Cards: No Information Found.
    Parallel SCSI: No Information Found.
    System Power Settings:
    AC Power:
    System Sleep Timer (Minutes): 0
    Disk Sleep Timer (Minutes): 0
    Display Sleep Timer (Minutes): 0
    Dynamic Power Step: No
    Reduce Processor Speed: No
    Sleep On Power Button: Yes
    Automatic Restart On Power Loss: No
    Wake On AC Change: No
    Wake On LAN: No
    Wake On Modem Ring: No
    Adobe PDF 7.0:
    Status: Idle
    Print Server: Local
    Driver Version: 10.4
    Default: No
    URI: pdf700://distiller/
    PPD: Adobe PDF 3016.102
    PPD File Version: 1.0
    PostScript Version: (3016.102) 0
    hp LaserJet 1012:
    Status: Idle
    Print Server: Local
    Driver Version: 1.4.5
    Default: Yes
    URI: usb://Hewlett-Packard/hp LaserJet 1012?serial=00CNFB638356
    PPD: hp LaserJet 1012
    PPD File Version: 1.0
    PostScript Version: (3011.104) 0
    Serial-ATA Bus:
    Maxtor 6B250S0:
    Capacity: 233.76 GB
    Model: Maxtor 6B250S0
    Revision: BANC1E50
    Serial Number: B61QB0RH
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk1
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "A (upper)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Macintosh HD:
    Capacity: 233.64 GB
    Available: 50.02 GB
    Writable: Yes
    File System: Journaled HFS+
    BSD Name: disk1s3
    Mount Point: /
    Maxtor 6B250S0:
    Capacity: 233.76 GB
    Model: Maxtor 6B250S0
    Revision: BANC1E50
    Serial Number: B61QB0RH
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk1
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "A (upper)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Macintosh HD:
    Capacity: 233.64 GB
    Available: 50.02 GB
    Writable: Yes
    File System: Journaled HFS+
    BSD Name: disk1s3
    Mount Point: /
    Serial-ATA Bus:
    Maxtor 7L300S0:
    Capacity: 279.48 GB
    Model: Maxtor 7L300S0
    Revision: BANC1E00
    Serial Number: L602X73H
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk0
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "B (lower)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Primo Volume:
    Capacity: 279.36 GB
    Available: 154.23 GB
    Writable: Yes
    File System: HFS+
    BSD Name: disk0s3
    Mount Point: /Volumes/Primo Volume
    Maxtor 7L300S0:
    Capacity: 279.48 GB
    Model: Maxtor 7L300S0
    Revision: BANC1E00
    Serial Number: L602X73H
    Removable Media: No
    Detachable Drive: No
    BSD Name: disk0
    Protocol: ata
    Unit Number: 0
    Socket Type: Serial-ATA
    Bay Name: "B (lower)"
    OS9 Drivers: No
    S.M.A.R.T. status: Verified
    Volumes:
    Primo Volume:
    Capacity: 279.36 GB
    Available: 154.23 GB
    Writable: Yes
    File System: HFS+
    BSD Name: disk0s3
    Mount Point: /Volumes/Primo Volume
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0035
    PCI Revision ID: 0x0043
    PCI Vendor ID: 0x1033
    Bus Number: 0x2b
    Hub in Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x1003
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Hub in Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x1003
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Optical USB Mouse:
    Version: 3.40
    Bus Power (mA): 100
    Speed: Up to 1.5 Mb/sec
    Manufacturer: Logitech
    Product ID: 0x0307
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    Apple Pro Keyboard:
    Version: 4.10
    Bus Power (mA): 250
    Speed: Up to 12 Mb/sec
    Manufacturer: Mitsumi Electric
    Product ID: 0x020b
    Vendor ID: 0x05ac (Apple Computer, Inc.)
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0035
    PCI Revision ID: 0x0043
    PCI Vendor ID: 0x1033
    Bus Number: 0x0b
    hp LaserJet 1012:
    Version: 1.00
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Hewlett-Packard
    Product ID: 0x0d17
    Serial Number: 00CNFB638356
    Vendor ID: 0x03f0
    hp LaserJet 1012:
    Version: 1.00
    Bus Power (mA): 500
    Speed: Up to 12 Mb/sec
    Manufacturer: Hewlett-Packard
    Product ID: 0x0d17
    Serial Number: 00CNFB638356
    Vendor ID: 0x03f0
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0040
    PCI Revision ID: 0x0001
    PCI Vendor ID: 0x106b
    Bus Number: 0x09
    USB Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBOHCI
    PCI Device ID: 0x0040
    PCI Revision ID: 0x0001
    PCI Vendor ID: 0x106b
    Bus Number: 0x08
    USB High-Speed Bus:
    Host Controller Location: Built In USB
    Host Controller Driver: AppleUSBEHCI
    PCI Device ID: 0x00e0
    PCI Revision ID: 0x0004
    PCI Vendor ID: 0x1033
    Bus Number: 0x4b
    Message was edited by: Rinaldo

  • Cisco ASA 8.3(1) with VPN Client and IP Communicator - one way communication

    Hi Community.
    I have a strange problem with my setup and I'm pretty sure it's either some type of routing (or NAT) or just a missing rule allowing the traffic. But I'm now at a point where I'd like to request your help.
    I have some remote access users who have the Cisco IP Communicator (CIPC) installed on their notebooks. So:
    VPN user with CIPC <> ASA Firewall <> Voice Router <> CCM <> IP Phone
    The VPN works fine for any other traffic. Also the basic connection for the IP Communicator works fine. It get's connected to the CallManager, is shown as registered and you even can call an internal phone and also external phones. BUT: while you can hear the called party (so the internal phone) it doesn't work for the other way. There is no sound coming from the remote/caller.
    I already figured out that it's also not possible to ping from the VPN phone to the internal IP Phone subnet. While the VPN user can ping any other device in the internal network, he can't do it to the Cisco IP Phones. But if the VPN phone calls a none-internal phone (mobiles...) - it works!
    My thought is that the call can't be build up correctly between the VPN phone and the internal phone.
    I found similiar situations with google but they are all for the other way around: call to internal works, but not to VPN.
    What do you think?

    Hi,
    Typically ASA lists specific networks to the VPN Client when Split Tunnel is used.
    This would mean that there is a Split Tunnel ACL used in the ASA configurations for this VPN connection which needs to have the missing network added for the traffic to be tunneled to the VPN connection.
    - Jouni

  • Strange issue with 3.6.3 VPN Client and IOS firewall

    I'm able to establish a VPN connection from the VPN Client to the e0/0 interface of the IOS FW/VPN router and pass encrypted traffic.
    Whenever I initiate a connection to something on the "Internet" from the LAN (e0/1) of the router, a temporary ACL entry is added to ACL 103 as it should be and I'm able to get out on the Internet from the internal LAN; however, I immediately lose my VPN connection from my PC Client when IOS FW adds those temporary "return entries".
    Router is running 12.2(13)T.
    Anyone else having issues like that? I've looked everywhere on cisco.com and elsewhere but I don't see anyone having a similar issue.
    You Cisco gurus have any thoughts?
    Thanks,
    Jamey
    Config below:
    jamey#wr t
    Building configuration...
    Current configuration : 3947 bytes
    ! Last configuration change at 16:27:03 GMT Wed Jan 22 2003 by jdepp
    ! NVRAM config last updated at 00:14:38 GMT Wed Jan 22 2003 by jdepp
    version 12.2
    service timestamps debug datetime msec
    service timestamps log datetime msec localtime show-timezone
    service password-encryption
    hostname "jamey"
    no logging buffered
    no logging console
    username XXXX password 7 XXXXX
    clock timezone GMT 0
    aaa new-model
    aaa authentication login tac local
    aaa session-id common
    ip subnet-zero
    no ip domain lookup
    ip inspect name myfw ftp
    ip inspect name myfw realaudio
    ip inspect name myfw smtp
    ip inspect name myfw streamworks
    ip inspect name myfw vdolive
    ip inspect name myfw tftp
    ip inspect name myfw rcmd
    ip inspect name myfw tcp
    ip inspect name myfw udp
    ip inspect name firewall http java-list 3
    ip audit notify log
    ip audit po max-events 100
    crypto isakmp policy 3
    encr 3des
    hash md5
    authentication pre-share
    group 2
    crypto isakmp nat keepalive 20
    crypto isakmp client configuration group XXXX
    key XXXXXXX
    dns x.x.x.x
    domain xxx.com
    pool ipsec-pool
    acl 191
    crypto ipsec security-association lifetime kilobytes 536870911
    crypto ipsec security-association lifetime seconds 86400
    crypto ipsec transform-set foxset esp-3des esp-md5-hmac
    crypto dynamic-map dynmap 10
    set transform-set foxset
    crypto map clientmap client authentication list tac
    crypto map clientmap isakmp authorization list XXXXX
    crypto map clientmap client configuration address respond
    crypto map clientmap 10 ipsec-isakmp dynamic dynmap
    interface Loopback10
    description just for test purposes
    ip address 172.16.45.1 255.255.255.0
    interface Ethernet0/0
    description "Internet"
    ip address x.x.x.x 255.255.255.224
    ip access-group 103 in
    ip inspect myfw out
    no ip route-cache
    no ip mroute-cache
    half-duplex
    crypto map clientmap
    interface Ethernet0/1
    description "LAN"
    ip address 192.168.45.89 255.255.255.0
    no ip route-cache
    no ip mroute-cache
    half-duplex
    ip local pool ipsec-pool 192.168.100.1 192.168.100.254
    ip classless
    ip route 0.0.0.0 0.0.0.0 Ethernet0/0
    no logging trap
    access-list 3 permit any
    access-list 103 permit ip 192.168.100.0 0.0.0.255 any log
    access-list 103 permit icmp any any log
    access-list 103 permit udp any eq isakmp any log
    access-list 103 permit esp any any log
    access-list 103 permit ahp any any log
    access-list 103 permit udp any any eq non500-isakmp log
    access-list 103 permit tcp any any eq 1723 log
    access-list 103 permit udp any any eq 1723 log
    access-list 103 deny tcp any any log
    access-list 103 deny udp any any log
    access-list 191 permit ip 192.168.45.0 0.0.0.255 192.168.100.0 0.0.0.255
    access-list 191 permit ip 172.16.45.0 0.0.0.255 192.168.100.0 0.0.0.255
    radius-server authorization permit missing Service-Type
    call rsvp-sync
    line con 0
    line aux 0
    line vty 0 4
    exec-timeout 0 0
    password XXXXXX
    line vty 5 15
    end
    Some debugging info:
    At this point, my VPN PC is successfully connected to the e0/0 VPN router and assigned IP of 192.168.100.2. It is running constant pings to 192.168.45.67 and 172.16.45.1 (172.16.45.1 is a loopback on the router for testing), 192.168.45.67 is a host on the internal network.
    .Jan 22 01:27:38.284: ICMP type=8, code=0
    .Jan 22 01:27:38.288: IP: s=192.168.45.67 (Ethernet0/1), d=192.168.100.2 (Ethern
    et0/0), g=192.168.100.2, len 60, forward
    .Jan 22 01:27:38.288: ICMP type=0, code=0
    .Jan 22 01:27:38.637: IP: s=192.168.45.145 (Ethernet0/0), d=255.255.255.255, len
    40, access denied
    .Jan 22 01:27:38.637: UDP src=2301, dst=2301
    .Jan 22 01:27:38.641: IP: s=192.168.45.145 (Ethernet0/1), d=255.255.255.255, len
    40, rcvd 2
    .Jan 22 01:27:38.641: UDP src=2301, dst=2301
    .Jan 22 01:27:38.761: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:38.765: IP: s=192.168.100.2 (Ethernet0/0), d=172.16.45.1, len 60,
    rcvd 4
    .Jan 22 01:27:38.765: ICMP type=8, code=0
    .Jan 22 01:27:38.765: IP: s=172.16.45.1 (local), d=192.168.100.2 (Ethernet0/0),
    len 60, sending
    .Jan 22 01:27:38.765: ICMP type=0, code=0
    .Jan 22 01:27:39.282: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:39.286: IP: s=192.168.100.2 (Ethernet0/0), d=192.168.45.67 (Ethern
    et0/1), g=192.168.45.67, len 60, forward
    .Jan 22 01:27:39.286: ICMP type=8, code=0
    .Jan 22 01:27:39.286: IP: s=192.168.45.67 (Ethernet0/1), d=192.168.100.2 (Ethern
    et0/0), g=192.168.100.2, len 60, forward
    .Jan 22 01:27:39.290: ICMP type=0, code=0
    .Jan 22 01:27:39.763: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:39.767: IP: s=192.168.100.2 (Ethernet0/0), d=172.16.45.1, len 60,
    rcvd 4
    .Jan 22 01:27:39.767: ICMP type=8, code=0
    .Jan 22 01:27:39.767: IP: s=172.16.45.1 (local), d=192.168.100.2 (Ethernet0/0),
    len 60, sending
    .Jan 22 01:27:39.767: ICMP type=0, code=0
    .Jan 22 01:27:40.283: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:40.287: IP: s=192.168.100.2 (Ethernet0/0), d=192.168.45.67 (Ethern
    et0/1), g=192.168.45.67, len 60, forward
    .Jan 22 01:27:40.287: ICMP type=8, code=0
    .Jan 22 01:27:40.287: IP: s=192.168.45.67 (Ethernet0/1), d=192.168.100.2 (Ethern
    et0/0), g=192.168.100.2, len 60, forward
    .Jan 22 01:27:40.291: ICMP type=0, code=0
    .Jan 22 01:27:40.596 GMT: %SEC-6-IPACCESSLOGNP: list 103 permitted 50 216.16.193
    .52 -> <VPN ROUTER E0/0 INTERFACE>, 222 packets
    .Jan 22 01:27:40.596 GMT: %SEC-6-IPACCESSLOGP: list 103 permitted udp 216.16.193
    .52(500) -> <VPN ROUTER E0/0 INTERFACE>(500), 16 packets
    here is where I initiate a telnet connection to a host 2.2.2.2 (a dummy host on the "Internet")
    from a host on the internal side (LAN) (192.168.45.1)
    .Jan 22 01:27:40.600: IP: s=192.168.45.1 (Ethernet0/1), d=2.2.2.2 (Ethernet0/0),
    g=2.2.2.2, len 44, forward
    .Jan 22 01:27:40.600: TCP src=38471, dst=23, seq=953962328, ack=0, win=4128
    SYN
    .Jan 22 01:27:40.764: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    here is where by VPN connection breaks
    .Jan 22 01:27:40.768: IPSEC(epa_des_crypt): decrypted packet failed SA identity
    check
    .Jan 22 01:27:41.285: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:41.285: IPSEC(epa_des_crypt): decrypted packet failed SA identity
    check
    .Jan 22 01:27:45.773: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:45.777: IPSEC(epa_des_crypt): decrypted packet failed SA identity
    check
    .Jan 22 01:27:46.774: IP: s=<VPN PC CLIENT> (Ethernet0/0), d=<VPN ROUTER E0/0 INTERFACE> (Ethern
    et0/0), len 112, rcvd 3, proto=50
    .Jan 22 01:27:46.774: IPSEC(epa_des_crypt): decrypted packet failed SA identity
    check

    Ok..I found the bug ID for this:
    CSCdz46552
    the workaround says to configure an ACL on the dynamic ACL.
    I don't understand what that means.
    I found this link:
    http://www.cisco.com/en/US/products/sw/secursw/ps2138/products_maintenance_guide_chapter09186a008007da4d.html#96393
    and they talk about it, but I'm having a hard time decoding what this means:
    "To specify an extended access list for a crypto map entry, enter the match address crypto map configuration command. This access list determines which traffic should be protected by IPSec and which traffic should not be protected by IPSec. If this is configured, the data flow identity proposed by the IPSec peer must fall within a permit statement for this crypto access list. If this is not configured, the router will accept any data flow identity proposed by the IPSec peer. However, if this is configured but the specified access list does not exist or is empty, the router will drop all packets."

  • How to configure full tunnel with VPN client and router?

    I know the concept of split tunnel....Is it possibe to configure vpn client and router full tunnel or instead of router ASA? I know filter options in concentrators is teher options in ISR routers or ASA?

    I think it is possible. Following links may help you
    http://www.cisco.com/en/US/products/hw/routers/ps274/products_configuration_example09186a0080819289.shtml

  • Mavericks VPN dropouts with native VPN client and Cisco IPSec

    Since update to Maverics I am experiencing VPN dropouts with native VPN client and Cisco IPSec
    I am connecting via a WIFI router to a remote VPN server
    The conenction is good for a while but eventually it drops out.
    I had Zero issues in mountain lion and only have issues since the update to 10.9
    I had similar issues in teh past with an unrelaibel wifi router but i am using a Verizon Fios router and it has worked impecably until mavericks
    My thoughts are:
    1 -issue with mavericks  ( maybe the app sleep funciton affecting eithe VPN or WIFI daemons)
    2- Issue with  cisco router compaitibility or timing with Cisco IPSEC
    3- Issue with WIFI itself on mavericks - some sort of WIFI software bug
    Any thousuggestions?

    Since update to Maverics I am experiencing VPN dropouts with native VPN client and Cisco IPSec
    I am connecting via a WIFI router to a remote VPN server
    The conenction is good for a while but eventually it drops out.
    I had Zero issues in mountain lion and only have issues since the update to 10.9
    I had similar issues in teh past with an unrelaibel wifi router but i am using a Verizon Fios router and it has worked impecably until mavericks
    My thoughts are:
    1 -issue with mavericks  ( maybe the app sleep funciton affecting eithe VPN or WIFI daemons)
    2- Issue with  cisco router compaitibility or timing with Cisco IPSEC
    3- Issue with WIFI itself on mavericks - some sort of WIFI software bug
    Any thousuggestions?

  • Cisco ASA 5505, Cisco VPN Client and Novell Netware

    Hi,
    Our ISP have installed Cisco ASA 5505 firewall. We are trying to connect to our Novell 5.1 server using VPN client.
    I installed VPN client on a laptop that is using wireless connection. I connect using wireless signal from near by hotel and I am able to connect to my firewall usinging vpn client and also able to login in using Novell client for XP.
    When I use same vpn client and Novell client at home that is not using wireless connection, but DSL connection amd not able to login or find the tree.
    The only difference in two machine is laptop using wireless connection and my home machine is using wired connection using DSL.

    If your remote end of the services in question support IPsec IKEv1 as the VPN type then, yes - the 5505 can be a client for that service. At that point it looks like a regular LAN-LAN VPN which is documented in many Cisco and 3rd party how-to documents.

  • Boot camp with Cisco VPN client and smart card

    Looking at a Macbook or Macbook Air and the only reason I need to run windows is to be able to access my work network through the Cisco VPN client and my Smartcard then use remote desktop. From my understanding if I run Bootcamp it should work am I correct? Im going to an Apple store tomorrow hopefully they can help too.
    Thanks

    mrbacklash wrote:
    Ok with that being said will the MBA 11.6 1.4ghz have the guts to make it run mostly internet based programs over the VPN connection?
    I think if you are running apps over the Internet the bottleneck will be the Internet and your VPN bandwidth. Your computer can certainly execute faster than Internet communications.
    Besides, Internet or remote applications run on the remote server. All your local computer does is local processing of the data if necessary.
    Message was edited by: BobTheFisherman

  • Problem with Cisco VPN client and HP elitebook 2530p windows 7 64-bit

    Hi there
    I have a HP Elitebook 2530p which i upgraded to windows 7 64-bit. I installed the Cisco VPN client application (ver. 5.0.07.0290 and also 64-bit) and the HP connection manager to connect to the internet through a modem Qualcomm gobi 1000 (that is inside the laptop). When I connect to the VPN, it connects (I write the username and password) but there is no traffic inside de virtual adapter for my servers. When I connect to the internet through wire or wireless internet, I connect de VPN client and there is no problem to establish communication to my servers.
    I tried everything, also change the driver and an earlier version of the HP connection manager application. I also talked to HP and they told me that there was a report with this kind of problem and it was delivered to Cisco. I don’t know where is the problem.
    Could anyone help me?
    Thanks to all.

    You can try to update Deterministic Network Enhancer to the below listed release which supports
    WWAN Drivers.
    http://www.citrix.com/lang/English/lp/lp_1680845.asp.
    DNE now supports WWAN devices in Win7.  Before downloading the latest version of DNEUpdate from the links below,  be sure you have the latest
    drivers for your network adapters by downloading them from the vendors’ websites.
    For 64-bit: ftp://files.citrix.com/dneupdate64.msi
    Hope that helps.

Maybe you are looking for

  • Error opening PDF

    Hi all,     I'm having problems opening PDF files. I'm using FM CONVERT_OTFSPOOLJOB_2_PDF to generate the file into the server. Then I'm using class/method VIEWER->VIEW_DOCUMENT_FROM_TABLE to open it. The problem is that some files are opened and oth

  • HpIQ770 how do i get this webcam to work?

    i can not find the settings i cant find it anywhere

  • Cursors in Captivate 2

    Hello folks, I'm trying to create custom cursors that will let me click on captured scroll bars. I am sure you all have run into the problem where the cursor bounding box won't let you place the cursor over the right side scroll bar because it runs i

  • XML Publisher, define variable and use out side the group

    Hi Is there any way that I can define a variable in the group and move XML data like line amount into that variable and use into outside the group. Regards ASIM

  • BizTalk Host Application Adapters - Set Client Context Values

    http://technet.microsoft.com/en-us/library/bb726925(v=bts.10).aspx Client Context The schema provides the node, TIClientContext, allowing context values to be passed. There are several Client Context properties supported by the adapter, listed in Tab