Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Fritz VPN Probleme nach Update 9.3

Hallo,

ich habe gestern das update auf die 9.306 gemacht.

Soweit ohne Probleme. Ich habe meine Fritzbox per VPN seit 4 Jahren verbunden uns auch keine Probleme gehabt.

Heute morgen ging das Telefonieren nicht mehr. Hab erst an eine DSL Störung gedacht, aber sobald ich das VPN in der Fritzbox abschalte geht die telefonie wieder ohne Probleme.

Kann dieses Problem jemand bestätigen ?? oder sogar helfen ?

Danke Gruß Mattlou


This thread was automatically locked due to age.
Parents
  • Config sieht wie folgt aus:

    site 2 site IpSec 
    Dort den Remote Gateway und die Policy angegeben wie in der Anleitung hier im Forum.

    Remote Gateway auf Respond only gestellt. mit Preshared Key
    Dann die Remote Netzwerke angelegt.

    Policy Fritzbox erstellt.

    Dann die TXT Datei in die Fritz Box geladen.

    (die FQDN habe ich durch X ersetzt.

    vpncfg {
            connections {
                    enabled = yes;
                    conn_type = conntype_lan;
                    name = "VPN Astaro";
                    always_renew = yes;
                    reject_not_encrypted = no;
                    dont_filter_netbios = yes;
                    localip = 0.0.0.0;
                    local_virtualip = 0.0.0.0;
                    remoteip = 0.0.0.0;
                    remote_virtualip = 0.0.0.0;
                    remotehostname = "*********";
                    localid {
                            fqdn = "*********X";
                    }
                    remoteid {
                            fqdn = "*********";
                    }
                    mode = phase1_mode_idp;
                    phase1ss = "alt/all-no-aes/all";
                    keytype = connkeytype_pre_shared;
                    key = "*********xx";
                    cert_do_server_auth = no;
                    use_nat_t = no;
                    use_xauth = no;
                    use_cfgmode = no;
                    phase2localid {
                            ipnet {
                                    ipaddr = 192.168.78.0;
                                    mask = 255.255.255.0;
                            }
                    }
                    phase2remoteid {
                            ipnet {
                                    ipaddr = 192.168.1.0;
                                    mask = 255.255.255.0;
                            }
                    }
                    phase2ss = "esp-3des-sha/ah-no/comp-no/pfs";
                    accesslist = "permit ip any 192.168.1.0 255.255.255.0";
            }

            ike_forward_rules = "udp 0.0.0.0:500 0.0.0.0:500", 
                                "udp 0.0.0.0:4500 0.0.0.0:4500";
    }


    Gruß Mattlou
Reply
  • Config sieht wie folgt aus:

    site 2 site IpSec 
    Dort den Remote Gateway und die Policy angegeben wie in der Anleitung hier im Forum.

    Remote Gateway auf Respond only gestellt. mit Preshared Key
    Dann die Remote Netzwerke angelegt.

    Policy Fritzbox erstellt.

    Dann die TXT Datei in die Fritz Box geladen.

    (die FQDN habe ich durch X ersetzt.

    vpncfg {
            connections {
                    enabled = yes;
                    conn_type = conntype_lan;
                    name = "VPN Astaro";
                    always_renew = yes;
                    reject_not_encrypted = no;
                    dont_filter_netbios = yes;
                    localip = 0.0.0.0;
                    local_virtualip = 0.0.0.0;
                    remoteip = 0.0.0.0;
                    remote_virtualip = 0.0.0.0;
                    remotehostname = "*********";
                    localid {
                            fqdn = "*********X";
                    }
                    remoteid {
                            fqdn = "*********";
                    }
                    mode = phase1_mode_idp;
                    phase1ss = "alt/all-no-aes/all";
                    keytype = connkeytype_pre_shared;
                    key = "*********xx";
                    cert_do_server_auth = no;
                    use_nat_t = no;
                    use_xauth = no;
                    use_cfgmode = no;
                    phase2localid {
                            ipnet {
                                    ipaddr = 192.168.78.0;
                                    mask = 255.255.255.0;
                            }
                    }
                    phase2remoteid {
                            ipnet {
                                    ipaddr = 192.168.1.0;
                                    mask = 255.255.255.0;
                            }
                    }
                    phase2ss = "esp-3des-sha/ah-no/comp-no/pfs";
                    accesslist = "permit ip any 192.168.1.0 255.255.255.0";
            }

            ike_forward_rules = "udp 0.0.0.0:500 0.0.0.0:500", 
                                "udp 0.0.0.0:4500 0.0.0.0:4500";
    }


    Gruß Mattlou
Children
No Data