Discussion:
[vpn-help] shrew client isn`t working
Marcel Feistl
2016-09-01 09:23:38 UTC
Permalink
Hey Folks,

I`m getting a strange issue when I try to use the client.

When I log in to the VPN manager, the RDP session drops and the machine isn`t reachable.
It seems that all network traffic will be routed through the vpn.

In another Azure VM with exactly the same config it is working.

Client Version: Standard Edition Version 2.2.2
OS: Windows Server 2012 R2 (Azure VM)
I uploaded the following config:

n:version:4
n:network-ike-port:500
n:network-mtu-size:1380
s:client-auto-mode:pull
s:client-iface:virtual
n:client-addr-auto:1
n:network-natt-port:4500
n:network-natt-rate:15
s:network-frag-mode:disable
n:network-frag-size:540
n:network-dpd-enable:1
n:network-notify-enable:1
n:client-banner-enable:1
s:ident-server-type:any
s:phase1-exchange:aggressive
s:phase1-cipher:auto
s:phase1-hash:auto
n:phase1-dhgroup:2
n:phase1-life-secs:86400
s:phase2-transform:auto
s:phase2-hmac:auto
n:phase2-pfsgroup:0
s:ipcomp-transform:disabled
n:client-dns-used:1
n:client-dns-auto:1
n:client-dns-suffix-auto:1
n:client-splitdns-used:0
n:client-splitdns-auto:1
n:client-wins-used:1
n:client-wins-auto:1
n:phase2-life-secs:3600
n:phase2-life-kbytes:0
n:policy-nailed:0
n:policy-list-auto:1
s:network-host:wwa.lufthansa.de
s:auth-method:mutual-psk-xauth
s:ident-client-type:keyid
s:ident-client-data:WWALHIntranet
b:auth-mutual-psk:M2d0NG5zN2dmbDM0dG84MjM=
s:network-natt-mode:enable
s:client-saved-username:***@LGA


Best Regards,

Marcel Feistl
Cloud System Administrator

inhive Group | join innovation | www.inhive-group.com<http://www.inhive-group.com/>
Phone +49-06251-80388-17 | Mobile +49-06251-80386-17 | Fax +49-06251-80387-17

inhive Group (Germany) GmbH & Co. KG, a member of the inhive Group
Marienburger Straße 2 | 64653 Lorsch, Germany
Represented by inhive Group GmbH | AG Darmstadt HRB 91743
Managing directors: Peter Gegusch, Christian Strauch, Oliver Vettel
Alexis La Goutte
2016-09-08 09:08:45 UTC
Permalink
Hi,

Connected to the same Firewall ?
Do you have check if there is no firewall blocking ?

Cheers
Post by Marcel Feistl
Hey Folks,
I`m getting a strange issue when I try to use the client.
When I log in to the VPN manager, the RDP session drops and the machine isn`t reachable.
It seems that all network traffic will be routed through the vpn.
In another Azure VM with exactly the same config it is working.
Client Version: Standard Edition Version 2.2.2
OS: Windows Server 2012 R2 (Azure VM)
n:version:4
n:network-ike-port:500
n:network-mtu-size:1380
s:client-auto-mode:pull
s:client-iface:virtual
n:client-addr-auto:1
n:network-natt-port:4500
n:network-natt-rate:15
s:network-frag-mode:disable
n:network-frag-size:540
n:network-dpd-enable:1
n:network-notify-enable:1
n:client-banner-enable:1
s:ident-server-type:any
s:phase1-exchange:aggressive
s:phase1-cipher:auto
s:phase1-hash:auto
n:phase1-dhgroup:2
n:phase1-life-secs:86400
s:phase2-transform:auto
s:phase2-hmac:auto
n:phase2-pfsgroup:0
s:ipcomp-transform:disabled
n:client-dns-used:1
n:client-dns-auto:1
n:client-dns-suffix-auto:1
n:client-splitdns-used:0
n:client-splitdns-auto:1
n:client-wins-used:1
n:client-wins-auto:1
n:phase2-life-secs:3600
n:phase2-life-kbytes:0
n:policy-nailed:0
n:policy-list-auto:1
s:network-host:wwa.lufthansa.de
s:auth-method:mutual-psk-xauth
s:ident-client-type:keyid
s:ident-client-data:WWALHIntranet
b:auth-mutual-psk:M2d0NG5zN2dmbDM0dG84MjM=
s:network-natt-mode:enable
Best Regards,
*Marcel Feistl *Cloud System Administrator
inhive Group | join innovation | www.inhive-group.com
Phone +49-06251-80388-17 | Mobile +49-06251-80386-17 | Fax
+49-06251-80387-17
inhive Group (Germany) GmbH & Co. KG, a member of the inhive Group
Marienburger Straße 2 | 64653 Lorsch, Germany
Represented by inhive Group GmbH | AG Darmstadt HRB 91743
Managing directors: Peter Gegusch, Christian Strauch, Oliver Vettel
_______________________________________________
vpn-help mailing list
https://lists.shrew.net/mailman/listinfo/vpn-help
Marcel Feistl
2016-09-12 09:57:14 UTC
Permalink
Hi,

The firewall ins`t blocking.
I turned it completely off and the same issue appears.

Best Regards,

Marcel Feistl
Cloud System Administrator

inhive Group | join innovation | www.inhive-group.com<http://www.inhive-group.com/>
Phone +49-06251-80388-17 | Mobile +49-06251-80386-17 | Fax +49-06251-80387-17

inhive Group (Germany) GmbH & Co. KG, a member of the inhive Group
Marienburger Straße 2 | 64653 Lorsch, Germany
Represented by inhive Group GmbH | AG Darmstadt HRB 91743
Managing directors: Peter Gegusch, Christian Strauch, Oliver Vettel

From: ***@gmail.com [mailto:***@gmail.com] On Behalf Of Alexis La Goutte
Sent: Thursday, September 8, 2016 11:09
To: Marcel Feistl <***@inhive.group>
Cc: vpn-***@lists.shrew.net
Subject: Re: [vpn-help] shrew client isn`t working

Hi,
Connected to the same Firewall ?
Do you have check if there is no firewall blocking ?
Cheers

On Thu, Sep 1, 2016 at 11:23 AM, Marcel Feistl <***@inhive.group<mailto:***@inhive.group>> wrote:
Hey Folks,

I`m getting a strange issue when I try to use the client.

When I log in to the VPN manager, the RDP session drops and the machine isn`t reachable.
It seems that all network traffic will be routed through the vpn.

In another Azure VM with exactly the same config it is working.

Client Version: Standard Edition Version 2.2.2
OS: Windows Server 2012 R2 (Azure VM)
I uploaded the following config:

n:version:4
n:network-ike-port:500
n:network-mtu-size:1380
s:client-auto-mode:pull
s:client-iface:virtual
n:client-addr-auto:1
n:network-natt-port:4500
n:network-natt-rate:15
s:network-frag-mode:disable
n:network-frag-size:540
n:network-dpd-enable:1
n:network-notify-enable:1
n:client-banner-enable:1
s:ident-server-type:any
s:phase1-exchange:aggressive
s:phase1-cipher:auto
s:phase1-hash:auto
n:phase1-dhgroup:2
n:phase1-life-secs:86400
s:phase2-transform:auto
s:phase2-hmac:auto
n:phase2-pfsgroup:0
s:ipcomp-transform:disabled
n:client-dns-used:1
n:client-dns-auto:1
n:client-dns-suffix-auto:1
n:client-splitdns-used:0
n:client-splitdns-auto:1
n:client-wins-used:1
n:client-wins-auto:1
n:phase2-life-secs:3600
n:phase2-life-kbytes:0
n:policy-nailed:0
n:policy-list-auto:1
s:network-host:wwa.lufthansa.de<http://wwa.lufthansa.de>
s:auth-method:mutual-psk-xauth
s:ident-client-type:keyid
s:ident-client-data:WWALHIntranet
b:auth-mutual-psk:M2d0NG5zN2dmbDM0dG84MjM=
s:network-natt-mode:enable
s:client-saved-username:***@LGA


Best Regards,

Marcel Feistl
Cloud System Administrator

inhive Group | join innovation | www.inhive-group.com<http://www.inhive-group.com/>
Phone +49-06251-80388-17<tel:%2B49-06251-80388-17> | Mobile +49-06251-80386-17<tel:%2B49-06251-80386-17> | Fax +49-06251-80387-17<tel:%2B49-06251-80387-17>

inhive Group (Germany) GmbH & Co. KG, a member of the inhive Group
Marienburger Straße 2 | 64653 Lorsch, Germany
Represented by inhive Group GmbH | AG Darmstadt HRB 91743
Managing directors: Peter Gegusch, Christian Strauch, Oliver Vettel



_______________________________________________
vpn-help mailing list
vpn-***@lists.shrew.net<mailto:vpn-***@lists.shrew.net>
https://lists.shrew.net/mailman/listinfo/vpn-help

Loading...