<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Web Publisher Security &#187; cisco</title>
	<atom:link href="http://www.publishersecurity.com/tag/cisco/feed" rel="self" type="application/rss+xml" />
	<link>http://www.publishersecurity.com</link>
	<description>Information security blog to help web publishers stay protected</description>
	<lastBuildDate>Fri, 22 May 2009 10:51:42 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>VPN Phase 1 fails &#8211; Checkpoint to Cisco</title>
		<link>http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco</link>
		<comments>http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco#comments</comments>
		<pubDate>Mon, 12 May 2008 15:19:41 +0000</pubDate>
		<dc:creator>devnull</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[firewalls]]></category>
		<category><![CDATA[checkpoint]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[vpn]]></category>

		<guid isPermaLink="false">http://www.publishersecurity.com/?p=17</guid>
		<description><![CDATA[I recently encountered a problem setting up a VPN tunnel between a Cisco router and a Checkpoint firewall.
From the firewall side, i could see an IKE packet going out, and nothing coming back.
On the Router side, there was a reply to the IKE, but an error logged:
&#8220;Duplicate Phase 1 packet detected.  Retransmitting lastpacket.&#8221;
Now this error [...]]]></description>
			<content:encoded><![CDATA[<p>I recently encountered a problem setting up a VPN tunnel between a Cisco router and a Checkpoint firewall.</p>
<p>From the firewall side, i could see an IKE packet going out, and nothing coming back.</p>
<p>On the Router side, there was a reply to the IKE, but an error logged:</p>
<p><span class="searchTerm">&#8220;Duplicate</span> <span class="searchTerm">Phase</span> <span class="searchTerm">1</span> <span class="searchTerm">packet</span> <span class="searchTerm">detected</span>.  Retransmitting last<span class="searchTerm">packet</span>.&#8221;</p>
<p>Now this error should appear if the reply is discarded on the firewall side, and it tries to re-send the initial IKE packet.</p>
<p>Nothing indicated it in the firewall log.</p>
<p>What solved it was enabling Aggressive Mode on the firewall side.</p>
<p>I didnt have the time to go over and see why this helped, but it did the trick, so i moved on.</p>
<p>Another thing, and this is more of a reminder for me, the command for tunnel handling on checkpoint, is &#8220;vpn tu&#8221;. There you can see all the tunnels, and delete them.</p>
<p>If you know what caused this, please share <img src='http://www.publishersecurity.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-4528099294087239";
/* 728x90, created 9/12/08 */
google_ad_slot = "8300260123";
google_ad_width = 728;
google_ad_height = 90;
// --></script><strong>Update &#8211; <a href="http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco-update">here is why</a></strong><br />
<script src="http://pagead2.googlesyndication.com/pagead/show_ads.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
