Spaces in IPSec Main Mode ID for RV 120W? (Windows IPSec VPN)
I'm attempting to configure a Cisco RV 120W to connect to a remote network using an IPSec VPN hosted from a Windows Server 2003 machine, using certificates for authentication. I have been able to configure OpenSwan to connect from a Linux machine, so I can confirm that the IPSec connection is functional and working. However, I have had no success with the RV 120W. The problem is that I am unable to specify the Main Mode ID in a way that the RV 120W will accept. In all configurations I have tried, I receive the following messages in the logs:
2010-11-21 20:41:08: [BILGCS01] [IKE] ERROR: mismatched ID was returned. 2010-11-21 20:41:08: [BILGCS01] [IKE] INFO: Sending Informational Exchange: notify payload[ATTRIBUTES-NOT-SUPPORTED] 2010-11-21 20:41:08: [BILGCS01] [IKE] ERROR: Phase2 negotiation failed for XXX.XXX.XXX.XXX.
Using the debugging output of OpenSwan, I know that the Main Mode ID provided by the Windows server is the DER ASN1 DN from the certificate (e.g. "C=US, ST=MT, ..."). However, I am unable to specify this in the RV 120W configuration because the Remote Identifier field in the IKE Policy gives me the error Empty Space, Single Quote and Double Quote characters are not supported for this field. But, to my knowledge, it is not possible to change the Main Mode ID on the Windows side... so what do I do?
Re: Spaces in IPSec Main Mode ID for RV 120W? (Windows IPSec VPN
since this question is about a product in the Cisco Small Business / Linksys range, I suggest you move it to the Small Business - Security community, where you will have a better chance of getting expert advice.
Article ID:3091 Reboot and Factory Default Reset on ISA500 Series
Integrated Security Appliances Objective Reboot or restart of the
network device is made when certain changes in the settings need reboot
or if the device is frozen. The configuration setti...
Article ID:3403 WAN Quality of Service (QoS) Policy Profiles Settings on
ISA500 Series Integrated Security Appliances Objective Wide Area Network
(WAN) Quality of Service (QoS) policy profiles manage traffic through
classed-based profiles. These profiles ...
Article ID:2922 Cisco QuickVPN Installation Tips for Windows Operating
Systems For a video showing installation tips on Quick VPN, visit
http://youtu.be/hHu2z6A78N8 Objective Cisco QuickVPN is a free software
designed for remote access to a network. It is...