Oh, the Silly Things We Get Stuck On

calendar Posted on June 14, 2007   comments 4 Comments

I spent over 7 hours today attempting to get a Cisco VPN Concentrator to establish a lan-to-lan VPN tunnel with a Symantec Gateway Security appliance (aka firewall). Now, you’d think IPsec wouldn’t be so difficult — after all, it’s an “open” protocol, right? But dang, I burned a lot of hours on this today.

Oh the solution was very simple:

image

I spent so much time farting around with various permutations of MD5, SHA, ESP, 3DES and all the acronym soup involved that I never even thought to disable PFS.

I don’t really know what it does. I don’t really know if I want it. I just know that things work quite well without it.

My brain hurts.

[This is one of those articles that I'll hope to remember next time I do this, thus saving myself hours. Or perhaps it'll help the next poor schmuck searching for answers on the same thing.]

tags Tags: , , , ,

Related Posts Possibly Related Posts

Comments

4 Responses to “Oh, the Silly Things We Get Stuck On”

  1. Rob on June 15th, 2007 6:58 am

    I hear ya! Messing about with web development I find myself in this mess quite often. Pouring over my CSS wondering what I missed, when almost 90% of the time it is something real stupid. Either I forgot a letter in the filename, or forgot that its a *.png instead of a *.jpg, really silly stuff that gets me re-reading my ‘intro’ books looking for some obscure solution, when its just a spelling error.

  2. Michael on June 15th, 2007 7:14 am

    [This is one of those articles that I’ll hope to remember next time I do this, thus saving myself hours. Or perhaps it’ll help the next poor schmuck searching for answers on the same thing.]

    Make a lot of these type of posts on your blog. Oftentimes, I use my blog as a reference useful things I’ve found over the years.

  3. Chris on June 15th, 2007 9:06 pm

    @Rob - lol, ain’t it the truth?

    @Michael - I’m sometimes amused at how often I use my own blog as a research tool. “I know I mentioned that once…” is usually how the search starts.

  4. » pingback » Hamachi in "Production" » Solo Technology on June 16th, 2007 10:22 pm

Leave a Reply




Have you read the Comments section on the Disclaimer page?

About

Wandering the Internet, looking at all things bright and shiny. Playing with many, writing about some. More …

Recent Posts

Recent Comments: