NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
HankLambert
Jul 29, 2015Aspirant
FVS338 VPN still won't accept client
I got help here last week with a problem with the VPN Client not connecting to my FVS338 firewall. It worked on Friday, but now it is not working again, and the configuration is exactly as it was on ...
DaneA
Jul 30, 2015NETGEAR Employee Retired
Hi HankLambert,
Have you tried to delete then re-create the policies using the VPN Wizard? Check pages 8-13 of this link below as reference guide:
http://www.downloads.netgear.com/files/GDC/FVS318N/QSGVPN_4Apr2012.pdf
What is the current firmware version of the FVS338?
What is the version of the VPN Client Professional Software installed on the laptop?
I am looking forward to your response.
Regards,
DaneA
Netgear Community Team
HankLambert
Jul 30, 2015Aspirant
Thanks for the response. I have in fact deleted both the client policiy on the firewall and the VPN client on the laptop numerous times. I also followed the setup in the guide. The firewall firmware version version is 3.1.1-08, and the VPN Client has the following info:
vpnconf.exe 6.12.001
tgbikeng.exe 6.4.1
comlib.dll 4.1.0.1
tgbstarter.exe 4.2.0.4
vpncfg.dll 3.2.0.3
tgblibeay32.dll 0.9.8j
tgblogonui.exe 6.12
TgbCredProv.dll 6.12
TGBMPEnum.sys 2.00.02.0003 built by: WinDDK
TGBVPNVirtM.sys 2.04.04.0001 built by: WinDDK
--Hank
- DaneAJul 30, 2015NETGEAR Employee Retired
Hi HankLambert,
Is the LAN network configured on your FVS338 different from the the LAN network of the laptop where the VPN Client software is installed?
It is recommended that the LAN network on the FVS338 should be different (for example: the FVS338 LAN has a network address of 192.168.1.0/24) from the laptop where the VPN Client software is installed (for example: the PC has an IP address of 10.0.0.9/24). And of course, the laptop should be outside the network of your FVS338.Furthermore, try to disable PFS on the VPN policy of the FVS338 as well as disable PFS on the VPN Client software then check if you could open the tunnel.
I will be looking forward to your response.
Regards,
DaneA
Netgear Community Team
- HankLambertJul 30, 2015Aspirant
I am sure the LANs are different. The VPN client could be operating from anywhere, but we do not use a standard 192.168.1.0 network internally but custom octets. I do that on purpose to support VPN and remote access.
PFS was disabled on the client and I disabled it on the firewall. Still no good.
--Hank
- DaneAAug 02, 2015NETGEAR Employee Retired
Hi HankLambert,
Thank you for your feedback.
Since it was working before and you have already reconfigured the settings, I think that it might be a software firewall or an application that prevents it to establish the tunnel.
Let me share this forum link and this might help as well:
You might need to contact Netgear Support again for assistance.
Regards,
DaneA
Netgear Community Team
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!