AppGate Forum  
Home | Help | Search | Login | Register | AppGate Main Web

This forum is now read only. Discussions have moved to our new forum: http://support.cryptzone.com/cryptzone

Author Topic: How to setup Mobileaccess (iPad, iPhone, Android)  (Read 1735 times)

micksel

  • Newbie
  • *
  • Karma: 0
  • Posts: 3
How to setup Mobileaccess (iPad, iPhone, Android)
« on: March 26, 2012, 11:21:19 am »
We are running : Appgate Free Edition 10.0 with a authentication method set to a Radius solution with sms verify.

We have configure the following.
* a Role called MobileUsers with the access rule Mobile-os
* Added a preshared key under L2TP/IPsec Access
* added a local IP range under Per system Pools (what access does this range require?)
* what firewall rules to we need to allow? port 22 out, appgate allowed to connect to serviceports (http, RDP) in?

But we can't get it 2 work,
* Android can create the VPN tunnel but the appgate client can't verify this.
* Iphone does something simulare
* windows phone, connect but dosen't show any icons but we are now only using andriod and iphones/ipads
Logged

ess

  • Administrator
  • Full Member
  • *****
  • Karma: 0
  • Posts: 22
Re: How to setup Mobileaccess (iPad, iPhone, Android)
« Reply #1 on: March 26, 2012, 01:29:00 pm »

But we can't get it 2 work,
* Android can create the VPN tunnel but the appgate client can't verify this.
* Iphone does something simulare
* windows phone, connect but dosen't show any icons but we are now only using andriod and iphones/ipads

The guide for setting up the server side for use with the Android and iOS based clients:

http://tech.cryptzone.com/agsecurityserver/ipsec.html

There's also an FAQ about required access:

http://tech.cryptzone.com/faq/agsecurityserver/004_firewall_requirments/index.html

/Erik
Logged

micksel

  • Newbie
  • *
  • Karma: 0
  • Posts: 3
Re: How to setup Mobileaccess (iPad, iPhone, Android)
« Reply #2 on: March 27, 2012, 03:04:33 pm »

But we can't get it 2 work,
* Android can create the VPN tunnel but the appgate client can't verify this.
* Iphone does something simulare
* windows phone, connect but dosen't show any icons but we are now only using andriod and iphones/ipads

The guide for setting up the server side for use with the Android and iOS based clients:

http://tech.cryptzone.com/agsecurityserver/ipsec.html

There's also an FAQ about required access:

http://tech.cryptzone.com/faq/agsecurityserver/004_firewall_requirments/index.html

/Erik


Thanks Erik,
But no success, the appgate logs report the following:
ag_iked Got INITIAL-CONTACT message. Ignoring when we try to connect VPN...
Logged

ess

  • Administrator
  • Full Member
  • *****
  • Karma: 0
  • Posts: 22
Re: How to setup Mobileaccess (iPad, iPhone, Android)
« Reply #3 on: March 28, 2012, 07:55:13 am »

But we can't get it 2 work,
* Android can create the VPN tunnel but the appgate client can't verify this.
* Iphone does something simulare
* windows phone, connect but dosen't show any icons but we are now only using andriod and iphones/ipads

The guide for setting up the server side for use with the Android and iOS based clients:

http://tech.cryptzone.com/agsecurityserver/ipsec.html

There's also an FAQ about required access:

http://tech.cryptzone.com/faq/agsecurityserver/004_firewall_requirments/index.html

/Erik


Thanks Erik,
But no success, the appgate logs report the following:
ag_iked Got INITIAL-CONTACT message. Ignoring when we try to connect VPN...

The next step of the start should produce log entries like ag_iked Got P1 KEX...

If you didn't get this it's a sign that the firewall is not letting port 4500/udp through.

/Erik
Logged

micksel

  • Newbie
  • *
  • Karma: 0
  • Posts: 3
Re: How to setup Mobileaccess (iPad, iPhone, Android)
« Reply #4 on: March 28, 2012, 01:45:48 pm »

The next step of the start should produce log entries like ag_iked Got P1 KEX...

If you didn't get this it's a sign that the firewall is not letting port 4500/udp through.

/Erik

The logs says this now:
ag_iked Got INITIAL-CONTACT message. Ignoring
ag_iked SA's 0x905d8d00/0x8d5d90 set up for 10.172.198.241:* (95.199.6.241:4500) --> (83.241.220.204:4500) 192.168.125.220:1701
ag_iked Creating state for 38688
user <none> selected role _ikerole
ag_iked Got client connection, 95.199.6.241:46051 --> 192.168.125.220:1701

The phone says the VPN tunnel is connected but the appgate client doesn't accept this, It just says Checking... and the same startscreen is visual,
Usernamn:, Authenication Method and the Start VPN button...
Logged
Pages: [1]
« previous next »
 

Pages: [1]
Print Print
Powered by MySQL Powered by PHP Powered by SMF 2.0 RC1.2 | SMF © 2006–2009, Simple Machines LLC Valid XHTML 1.0! Valid CSS!