From cwager at 56kprojects.com Mon Mar 5 04:52:14 2018 From: cwager at 56kprojects.com (Chris Wager - 56K Projects) Date: Mon, 5 Mar 2018 10:52:14 +0000 Subject: [vpn-help] Shrew Soft VPN, AD Login NAT issues Message-ID: <1520247132600.87872@56kprojects.com> Dear Members I have paid for the professional license. I have an issue with the Shrew Soft VPN Client, I have configured the connection to my VPN Appliance and Enabled: force-rfc, in the Shrew Soft Client as this is required with the clients behind NAT and or on mobile data, the problem is that this works fine if they log in using cached credentials and then connect using the Shrew Soft Client it acknowledges the force-rfc and works fine. However my security policy dictates cached credentials should be disabled, however when I attempt to use the AD Login component of Shrewsoft VPN Cleint it fails to acknowledge the force-rfc and therefore does not function. and login fails etc. etc. as NAT = force-rfc is needed for communication behind nat, solutions anyone ? Regards Chris -------------- next part -------------- An HTML attachment was scrubbed... URL: From alexis.lagoutte at gmail.com Tue Mar 6 01:11:25 2018 From: alexis.lagoutte at gmail.com (Alexis La Goutte) Date: Tue, 6 Mar 2018 08:11:25 +0100 Subject: [vpn-help] Shrew Soft VPN, AD Login NAT issues In-Reply-To: <1520247132600.87872@56kprojects.com> References: <1520247132600.87872@56kprojects.com> Message-ID: Hi Chris, There is no longer dev on Shrew Client... But your issue is very strange.. Do you have check the log ? (enable debug) Cheers On Mon, Mar 5, 2018 at 11:52 AM, Chris Wager - 56K Projects < cwager at 56kprojects.com> wrote: > Dear Members > > I have paid for the professional license. > > I have an issue with the Shrew Soft VPN Client, I have configured the > connection to my VPN Appliance and Enabled: force-rfc, in the Shrew Soft > Client as this is required with the clients behind NAT and or on mobile > data, the problem is that this works fine if they log in using cached > credentials and then connect using the Shrew Soft Client it acknowledges > the force-rfc and works fine. > > However my security policy dictates cached credentials should be disabled, > however when I attempt to use the AD Login component of Shrewsoft VPN > Cleint it fails to acknowledge the force-rfc and therefore does not > function. and login fails etc. etc. as NAT = force-rfc is needed for > communication behind nat, solutions anyone ? > > Regards Chris > > > > _______________________________________________ > vpn-help mailing list > vpn-help at lists.shrew.net > https://lists.shrew.net/mailman/listinfo/vpn-help > > -------------- next part -------------- An HTML attachment was scrubbed... URL: