<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: IPsec and ALMOST CheckPoint</title>
	<atom:link href="http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html/feed" rel="self" type="application/rss+xml" />
	<link>http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html</link>
	<description>&#34;You know my methods, Watson...&#34;</description>
	<lastBuildDate>Thu, 09 Feb 2012 13:55:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: cristina_crow</title>
		<link>http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html/comment-page-1#comment-4774</link>
		<dc:creator>cristina_crow</dc:creator>
		<pubDate>Tue, 22 Jun 2010 13:38:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.imacandi.net/windancer/?p=1557#comment-4774</guid>
		<description>@joe: hmm, not really. Not for RemoteAccess anyway - PSK and not with Office Mode (as they call the ModeCfg).

I managed to run Site-to-Site very well - both PSK and RSA, and also RemoteAccess - RSA only without Office Mode.</description>
		<content:encoded><![CDATA[<p>@joe: hmm, not really. Not for RemoteAccess anyway &#8211; PSK and not with Office Mode (as they call the ModeCfg).</p>
<p>I managed to run Site-to-Site very well &#8211; both PSK and RSA, and also RemoteAccess &#8211; RSA only without Office Mode.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: joe</title>
		<link>http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html/comment-page-1#comment-4773</link>
		<dc:creator>joe</dc:creator>
		<pubDate>Tue, 22 Jun 2010 13:18:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.imacandi.net/windancer/?p=1557#comment-4773</guid>
		<description>Hey, I was just wondering: did you ever manage to solve this problem?</description>
		<content:encoded><![CDATA[<p>Hey, I was just wondering: did you ever manage to solve this problem?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: cristina_crow</title>
		<link>http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html/comment-page-1#comment-3849</link>
		<dc:creator>cristina_crow</dc:creator>
		<pubDate>Sat, 20 Feb 2010 23:02:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.imacandi.net/windancer/?p=1557#comment-3849</guid>
		<description>@ricardo: cool; thanks a lot for the comment; I&#039;ve always wanted to try out racoon, maybe now it&#039;s the time to do that :)</description>
		<content:encoded><![CDATA[<p>@ricardo: cool; thanks a lot for the comment; I&#8217;ve always wanted to try out racoon, maybe now it&#8217;s the time to do that <img src='http://www.imacandi.net/windancer/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: riccardo</title>
		<link>http://www.imacandi.net/windancer/2010/01/26/ipsec-and-almost-checkpoint.html/comment-page-1#comment-3845</link>
		<dc:creator>riccardo</dc:creator>
		<pubDate>Sat, 20 Feb 2010 17:32:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.imacandi.net/windancer/?p=1557#comment-3845</guid>
		<description>I&#039;ve succesfully followed the guide at http://www.fw-1.de/aerasec/ng/vpn-racoon/CP-VPN1-NG-Linux-racoon-roadwarrior.html
with only minor changes. On my setup I had to disable server cert verification, because CP hands you conflicting informations.
So my remote config on client is

remote x.x.x.x  {
	exchange_mode_main;
	certificate_type x509 &quot;server.pem&quot; &quot;serverkey.pem&quot;;
	my_identifier asn1dn;
	peers_identifier asn1dn;
	verify_cert off;
	proposal {
		encryption_algorithm 3des;
		hash_algorithm sha1;
		authentication_method rsasig;
		dh_group modp1024;
	}
}</description>
		<content:encoded><![CDATA[<p>I&#8217;ve succesfully followed the guide at <a href="http://www.fw-1.de/aerasec/ng/vpn-racoon/CP-VPN1-NG-Linux-racoon-roadwarrior.html" rel="nofollow">http://www.fw-1.de/aerasec/ng/vpn-racoon/CP-VPN1-NG-Linux-racoon-roadwarrior.html</a><br />
with only minor changes. On my setup I had to disable server cert verification, because CP hands you conflicting informations.<br />
So my remote config on client is</p>
<p>remote x.x.x.x  {<br />
	exchange_mode_main;<br />
	certificate_type x509 &#8220;server.pem&#8221; &#8220;serverkey.pem&#8221;;<br />
	my_identifier asn1dn;<br />
	peers_identifier asn1dn;<br />
	verify_cert off;<br />
	proposal {<br />
		encryption_algorithm 3des;<br />
		hash_algorithm sha1;<br />
		authentication_method rsasig;<br />
		dh_group modp1024;<br />
	}<br />
}</p>
]]></content:encoded>
	</item>
</channel>
</rss>

