Hi all, We have a number of FG-100As (FG100A-3.00-FW-build733-081121)
and have been using them for years for IPsec VPNs to one another, as
well as to a Nortel router. Now we are trying to set up IPsec to a Cisco
device run by a third party, but we' r...
We went through it on the phone and confirmed that it matched our
settings (DH group 2, aggressive mode, etc.). So time for a firmware
upgrade I think, if we can get it. Cheers, Will
Yeah, we were told they use PFS off, though I tried it with PFS on too
just in case phase 2 was relevant. So anything else I should try before
I try and get a firmware upgrade? These are pretty old so probably out
of their original warranty now. Than...
Thanks both for those suggestions, I' ll try them in turn. edu_pfau, if
I try to disable the DH group 2 setting in phase one I get an error '
You must select at least one DH group' . Perhaps that restriction has
been removed in a later firmware level...