<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic using vpnc with Palo Alto 4.1 IPSEC/Xauth in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31168#M22798</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It seems like the freely and widely available vpnc client should work just fine with the palo alto ipsec/xauth setup, however I must be missing something. I have it working with IPAD with the shared secret + XAUTH with group/password, but with vpnc on linux I get this in the system log:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IKE phase-1 negotiation is failed. Couldn't find configuration for failed IKE phase-1 request for peer IP $IP_ADDRESS[500], ID&amp;nbsp; keyid:646473726573&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 18 Feb 2012 20:48:57 GMT</pubDate>
    <dc:creator>DougHughes1</dc:creator>
    <dc:date>2012-02-18T20:48:57Z</dc:date>
    <item>
      <title>using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31168#M22798</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It seems like the freely and widely available vpnc client should work just fine with the palo alto ipsec/xauth setup, however I must be missing something. I have it working with IPAD with the shared secret + XAUTH with group/password, but with vpnc on linux I get this in the system log:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IKE phase-1 negotiation is failed. Couldn't find configuration for failed IKE phase-1 request for peer IP $IP_ADDRESS[500], ID&amp;nbsp; keyid:646473726573&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Feb 2012 20:48:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31168#M22798</guid>
      <dc:creator>DougHughes1</dc:creator>
      <dc:date>2012-02-18T20:48:57Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31169#M22799</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;one thing of note. I see the udp 500 isakmp queries going to the palo alto, but no replies coming back. This may be normal given the message.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Feb 2012 21:34:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31169#M22799</guid>
      <dc:creator>DougHughes1</dc:creator>
      <dc:date>2012-02-18T21:34:29Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31170#M22800</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I got it working with vpnc. It seems like it may have been a case sensitivity or other issue in the group password that was hidden by the opacity of the log message.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 19 Feb 2012 04:03:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31170#M22800</guid>
      <dc:creator>DougHughes1</dc:creator>
      <dc:date>2012-02-19T04:03:48Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31171#M22801</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Any chance you can post how? Think this would work with Anyconnect? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Mar 2013 20:51:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31171#M22801</guid>
      <dc:creator>amansour</dc:creator>
      <dc:date>2013-03-04T20:51:38Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31172#M22802</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here are the instructions for debian:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt; as root &lt;STRONG&gt;apt-get install vpnc&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt; And add the following to /etc/vpnc.conf &lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IPSec gateway &amp;lt;your gateway&amp;gt;&lt;/P&gt;&lt;P&gt;IPSec ID &amp;lt;group name&amp;gt;&lt;/P&gt;&lt;P&gt;IKE Authmode psk&lt;/P&gt;&lt;P&gt;NAT Traversal Mode natt&lt;/P&gt;&lt;P&gt;IPSec secret &amp;lt;your secret&amp;gt;&lt;/P&gt;&lt;P&gt;Xauth interactive&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't know if it will work with AnyConnect, but it works fine with vpnc and StrongSwan, modulo linux kernel bugs with forced re-keying and disconnects. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ubuntu:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt; as root &lt;STRONG&gt;apt-get install network-manager-strongswan&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt; Then, add a new VPN connection from the NetworkManager GUI and select the IPsec/IKE type. &lt;/LI&gt;&lt;LI&gt; Configuration options are the same as for VPNC &lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;H3&gt;&lt;SPAN class="mw-headline" id="Fedora.2C_Centos.2C_RHEL_and_other_rpm_based_distros"&gt;Fedora, Centos, RHEL and other rpm based distros &lt;/SPAN&gt;&lt;/H3&gt;&lt;OL&gt;&lt;LI&gt; as root yum install vpnc &lt;/LI&gt;&lt;LI&gt; and add the following to /etc/vpnc/&amp;lt;policy&amp;gt;.conf &lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;sudo vpnc &amp;lt;policy&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;replace &amp;lt;policy&amp;gt; with whatever you want to call your vpn connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----&lt;/P&gt;&lt;P&gt;the following may be useful to help with disconnects:&lt;/P&gt;&lt;P&gt;/etc/vpnc/desres.conf: DPD idle timeout (our side) 0&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Mar 2013 21:18:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31172#M22802</guid>
      <dc:creator>DougHughes1</dc:creator>
      <dc:date>2013-03-04T21:18:04Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31173#M22803</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just FYI I was able to get vpnc working on both Linux and Mac... XAUTH works great.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Mar 2013 00:29:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31173#M22803</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-03-05T00:29:08Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31174#M22804</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Great suggestion, there is a VPNC for Windows and MAC.&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Mar 2013 14:39:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31174#M22804</guid>
      <dc:creator>amansour</dc:creator>
      <dc:date>2013-03-05T14:39:06Z</dc:date>
    </item>
    <item>
      <title>Re: using vpnc with Palo Alto 4.1 IPSEC/Xauth</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31175#M22805</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There's a GUI for Mac too apparently... I haven't test it though:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://code.google.com/p/vpntool/" title="https://code.google.com/p/vpntool/"&gt; vpntool - Graphical user interface for VPNC, the open source Cisco VPN client - Google Project Hosting &lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Mar 2013 18:29:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/using-vpnc-with-palo-alto-4-1-ipsec-xauth/m-p/31175#M22805</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-03-05T18:29:16Z</dc:date>
    </item>
  </channel>
</rss>

