[vpn-help] Session terminated by gateway

Guy Le Blanc gcdruide at sympatico.ca
Sun Sep 19 09:04:19 CDT 2010


I have found that the only way for me to get rid of the "session terminated
by gateway" issue was to disable my Windows 7 (64 bits) firewall in addition
to setting phase-2 PFS=2. Once the firewall disabled, tunnel remains stable
over my wireless Cisco broadband home router/gateway. I have now installed
Shrew version 2.1.7 beta but I still have to disable the Windows firewall.
Is there a work around to this? After reading many forums, I seem to be the
only one in this situation... 

 

Here is my config (xxxxx masks private data):

n:version:3

n:network-ike-port:500

n:network-mtu-size:1380

n:client-addr-auto:1

n:network-natt-port:4500

n:network-natt-rate:15

n:network-frag-size:540

n:network-dpd-enable:1

n:network-notify-enable:1

n:client-banner-enable:1

n:phase1-dhgroup:2

n:phase1-life-secs:86400

n:client-dns-used:1

n:client-dns-auto:1

n:client-dns-suffix-auto:1

n:client-splitdns-used:1

n:client-splitdns-auto:1

n:client-wins-used:1

n:client-wins-auto:1

n:phase2-life-secs:3600

n:phase2-life-kbytes:0

n:policy-nailed:0

n:policy-list-auto:1

n:phase1-life-kbytes:0

n:vendor-chkpt-enable:0

s:network-host:xxxxxxx

s:client-auto-mode:pull

s:client-iface:virtual

s:network-natt-mode:enable

s:network-frag-mode:disable

s:auth-method:mutual-psk-xauth

s:ident-client-type:keyid

s:ident-server-type:any

s:ident-client-data:xxxxxxx

b:auth-mutual-psk:xxxxxxxx

s:phase1-exchange:aggressive

s:phase1-cipher:auto

s:phase1-hash:auto

s:phase2-transform:auto

s:phase2-hmac:auto

s:ipcomp-transform:disabled

n:phase2-pfsgroup:2

s:policy-level:auto

s:client-saved-username:xxxxxxxx

 

Many thanks

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.shrew.net/pipermail/vpn-help/attachments/20100919/c6ffb8ee/attachment.html>


More information about the vpn-help mailing list