[vpnc-devel] Trouble getting it working

Matthias Jung matthias.jung at uni-dortmund.de
Sun May 16 21:47:44 CEST 2004


Hi,
I am trying to use vpnc on the cisco vpn at the University of Dortmund. 
Unfortunately it doesn't work for me.
On the website of my university you can find this information ( available to 
anyone, so i can safely post them here ;-).

<-------------what the university says:-------------->
Policy type: Cisco Unified client
Gateway address: 129.217.129.34
Same authentication configuration
Use Perfect Forward Secrecy Disabled

IKE Suite:
GRP2_DH-1024
Cipher: 3DES_CBC
Hash: SHA
IPSec Suite: ESPIP_3DES_SHA-96

Soft Client Initial Configuration:
IP address of remote server: 129.217.129.34
Group Access Information:
Name: vpnoutside
Password: hrzvpnclient
<------------------------------------------------------->

I am using this configuration currently:

<--------------------/etc/vpnc.conf------------------->
Interface name tun0
IKE DH Group dh2
Perfect Forward Secrecy nopfs
IPSec gateway 129.217.129.34
IPSec ID vpnoutside
IPSec secret hrzvpnclient
<------------------------------------------------------->
And all i get is:

./vpnc: quick mode response rejected: INVALID_MESSAGE_ID
check pfs setting

Am I doing something wrong, or does vpnc simply not support the vpn servers 
requirements (I do not think so)

with regards

Matthias Jung


More information about the vpnc-devel mailing list