[ previous ] [ next ] [ threads ]
 
 From:  Chris Buechler <cbuechler at gmail dot com>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] m0n0wall IPsec vs Astaro IPsec
 Date:  Mon, 20 Sep 2004 14:14:41 -0400
On Mon, 20 Sep 2004 14:55:09 +0200, S. Mindorf <s dot mindorf at euroimmun dot de> wrote:
> 
> 
> I configured the Astaro like this:
> 
> ISAKMP(IKE)Settings:
> IKE Mode: Main Mode
> Encryption Algorithm: 3DES 168bit
> Authentication Algorithm: MD5 160bit
> IKE DH Group: DH Group5 (MOD1536)
> SA Lifetime (secs): 7800
> 
> IPsec-Settings:
> 
> IPSec Mode: Tunnel
> IPSec Protokol: ESP
> Encryption Algorithm: 3DES-CBC 168bit
> Enforce Algorithm: Off
> Authentication Algorithm: MD5 160bit
> SA Lifetime: 3600
> PFS: PFS Group5 (MOD1536)
> Compression: On-deflate
> 

Try unchecking all the encryption algorithms but 3DES on the m0n0wall
side.  Everything else looks ok at a quick glance.

-Chris