 
					|   | 
 | 
 | 
| 
 | 
| canna change law physics | 
				
				It should be called IPsuc..
			 
			Time suck. Only about 20 hours to get the clients configured and working... But I now have the laptops and the Android tablets on IPsec VPNs 
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-28-2014, 04:40 PM | 
 | 
| Slackerous Maximus Join Date: Apr 2005 Location: Columbus, OH 
					Posts: 18,206
				 | 
			How many clients? MSFT environment?
		 
				__________________ 2022 Royal Enfield Interceptor. 2012 Harley Davidson Road King 2014 Triumph Bonneville T100. 2014 Cayman S, PDK. Mercedes E350 family truckster. | ||
|  08-28-2014, 04:53 PM | 
 | 
| canna change law physics | 
			2 different clients: NPC for the Android phones/tablets VPN IPsec client Netgear (Greenbow) Windows VPN IPsec client Once the configuration is working, installing on the laptops and tablets is a snap... 
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-28-2014, 05:08 PM | 
 | 
| It'll be legen-waitforit Join Date: Jan 2002 Location: Calgary, Canada 
					Posts: 7,005
				 | 
			Should have bought a Mac    
				__________________ Bob James 06 Cayman S - Money Penny 18 Macan GTS Gone: 79 911SC, 83 944, 05 Cayenne Turbo, 10 Panamera Turbo | ||
|  08-28-2014, 05:10 PM | 
 | 
| canna change law physics | 
			Yeah. THAT is the problem...    
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-28-2014, 05:39 PM | 
 | 
| Back in the saddle again Join Date: Oct 2001 Location: Central TX west of Houston 
					Posts: 56,333
				 | 
			i love IPSec.  Not a fan of SSL.  But then my experience is all on Cisco routers and firewalls.  I've got IPSec set ip on a cisco ASA at the house.   I'm sure Mikester will be along any minute. 
				__________________ Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa  SOLD 2004 - gone but not forgotten | ||
|  08-28-2014, 05:45 PM | 
 | 
|   | 
| It'll be legen-waitforit Join Date: Jan 2002 Location: Calgary, Canada 
					Posts: 7,005
				 | 
			Sorry I've just never had that much of an issue, it is a standard, it's just his some companies deviate that causes issues. That being said it's always best to contact the vendor and get their configs as it's usually been done before. 
				__________________ Bob James 06 Cayman S - Money Penny 18 Macan GTS Gone: 79 911SC, 83 944, 05 Cayenne Turbo, 10 Panamera Turbo | ||
|  08-28-2014, 05:53 PM | 
 | 
| canna change law physics | 
			Part of the problem, the NPC client can't be configured in the Android environment. You install the windows client on a PC. Get it up and running, then save the config file. this is then copied to the Android.  It is the only IPsec client working on Android with the Netgear Routers. 
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-28-2014, 05:58 PM | 
 | 
| canna change law physics | 
			I haven't been an IT professional since 1983...
		 
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-28-2014, 05:59 PM | 
 | 
| Back in the saddle again Join Date: Oct 2001 Location: Central TX west of Houston 
					Posts: 56,333
				 | Quote: 
 
				__________________ Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa  SOLD 2004 - gone but not forgotten | ||
|  08-28-2014, 07:44 PM | 
 | 
| Registered | 
			Here I am! Yep. I'm the VPN guy, well sort of... But James knows this and isn't using anything from Cisco for some reason. Personally I dig SSL and have had a ton of success with it over the years. 
				__________________ -The Mikester I heart Boobies | ||
|  08-28-2014, 09:02 PM | 
 | 
| Back in the saddle again Join Date: Oct 2001 Location: Central TX west of Houston 
					Posts: 56,333
				 | Quote: 
 Quote: 
 
				__________________ Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa  SOLD 2004 - gone but not forgotten | ||
|  08-28-2014, 09:05 PM | 
 | 
|   | 
| Registered | 
			Dude, 7.x code? Are you running a museum?
		 
				__________________ -The Mikester I heart Boobies | ||
|  08-28-2014, 09:47 PM | 
 | 
| canna change law physics | Quote: 
 Dammit Jim! I'm an Engineer not a Network Specialist!   
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-29-2014, 04:02 AM | 
 | 
| Registered | 
			So you're doing L2TP/IPSec or just L2TP?
		 
				__________________ -The Mikester I heart Boobies | ||
|  08-29-2014, 06:58 AM | 
 | 
| Registered Join Date: Mar 2003 
					Posts: 10,364
				 | 
			Too lazy to set up a VPN... I just use SSH tunnels, or a remote X based application over SSH.
		 
				__________________ “IN MY EXPERIENCE, SUSAN, WITHIN THEIR HEADS TOO MANY HUMANS SPEND A LOT OF TIME IN THE MIDDLE OF WARS THAT HAPPENED CENTURIES AGO.” | ||
|  08-29-2014, 07:02 AM | 
 | 
| canna change law physics | 
			I'm doing straight IPsec. The Android devices have a combo L2TP/IPsec VPN function. They also have a PPTP function, but that quit working with my router after Honeycomb (Android 3.x).  I was using the PPTP server function for one of my remote workers, but it was unstable and would cause the router to reset a few times a day. So, I endeavored to persevere. I setup an IPsec client Policy and then worked on configuring the windows client. After that, I worked on configuring the NCP client. I used to buy "Cisco" stuff. But the "consumer" level stuff would quit working after about a year. And the "Cisco" VPN router I had would not work with my VOIP phone system. I am sure the commercial stuff works fine. But it is pretty darn expensive. Of course, 20 hours at $150-200/hr is pretty expensive too! 
				__________________ James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 | ||
|  08-29-2014, 07:07 AM | 
 | 
| Back in the saddle again Join Date: Oct 2001 Location: Central TX west of Houston 
					Posts: 56,333
				 | 
			
For my profile, I have an "IPSec Xauth PSK" profile set up.That's essentially a standard IPSec client.
		 
				__________________ Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa  SOLD 2004 - gone but not forgotten | ||
|  08-29-2014, 08:59 AM | 
 |