I have PIX 515 setup as Cisco VPN server for Cisco clients. When users connect using Cisco client ver 3.5, they are able to get to the login prompt. But users trying to connect using Cisco client higher than version 3.5 (like ver 4.6) it just times out.
When I look at the debug logs I see PIX trying to send phase 1 packets back, but the client does not see a response.
I am using esp-3des esp-md5-hmac with pre-share.
Does anyone know why I cannot use client version above 3.5??
Please check the below link (release notes for 6.2 (2)) - Section: Cisco VPN Client Interoperability
If you are using windows client it only support 3.x. You may need IOS upgrade or Linux, Solaris, and Macintosh platforms client to use with 3.5 or higher.
If your client is compatible from the above, then you may need to run 'debug' on PIX to see whats going on when the client requests connection.