 dcmina
join:2004-10-15 New York, NY
| reply to phife Re: NIGHTMARE - AT&T Global Network Client + Linksys
This thread has been extremely helpful! I have found that the Net Firewall Service is the key to gettting onto the dialer - however, I have another issue.... once checked, I am now unable to print to my local printer which is connected USB to my host computer - using a Linksys wireless router to connect via a notebook to both the internet and to the printer. Can anyone suggest how I can connect both to the ATT dialer, and be able to print? It seems that the Net Firewall Service checkbox almost is acting like an on off switch to either being able to connect with the dialer, or being able to print locally. I want to be able to do both - or am I asking for too much:) |
|
  pjl
@198.57.x.x | reply to Stachel Thanks!! I started having the same problem myself recently ("no response from IPSEC terminator") from my AT&T client. After opening the specified ports, it worked again. not sure why it started acting up in the first place.... |
|
 Stachel Premium join:2005-02-14 Austin, TX
1 edit | reply to BaMoo said by BaMoo:
I had to open udp ports 500 and 4500. BaMoo - thank you!! I had port 500 open, but opening UDP port 4500 also seemed to do the trick for me.
My config: Time Warner Cable Modem Linksys 802.11A+G Version 2 router, bought yesterday model WRT55AG V2 firmware 1.10 Pre-Shared Key (PSK) security with AES encryption
My problem symptom: I would see AT&T Net client 5.09.2 forever looping between Accessing digital certificate --and-- Negotiating encryption keys
What I tried that didn't work: Login Properties --> Preferences --> Click "Override..." Unchecked: Negotiate UDP encapsulation with VPN server for Nat traversal That worked for someone else, but didn't work for me. So I re-checked it.
Final list of all ports that I opened udp port 500 udp port 4500 tcp port 389 tcp port 709 tcp port 5080 tcp port 50
The other list of ports that I'm supposed to open I got from the AT&T Help Desk. They claimed they weren't supposed to be giving me support, but I pleaded.
Question: I opened the port by 1) @ the browser »192.168.1.1 2) "Applications & Gaming" ==> port range forwarding 3) Starting on the 6'th line down, started entering all the ports, used the IP of this laptop that I'm on now as the "to IP Address", and checked "Enabled" for each row.
Is this the right way to "open the port" ? This seemed like the most logical place to do it.
Thanks again Bamoo !!
Stachel |
|
 abs01
join:2005-01-08 england | reply to phife Got it. Need a device that allows vpn pass through. |
|
 abs01
join:2005-01-08 england
| reply to phife I'm using AT&T IPSec Application version 5.09.2 and a BT 512kb broadband connection to VPN. I'm not using an adsl router. Using Win xp pro on both laptops.
When I VPN into the company network with the connected usb modem, all is fine. Cannot use internet connection sharing on ibm laptop as that option is not available. Instead it states: "windows cannot display the properties of this coeection. The windows management instrumentation (WMI) might to corrupted..." Great!!!
I connect the usb modem to another laptop (hp) and peform the internet share option for the modem, then I hookup the other laptop (ibm), the vpn fails.
The hp laptop is the gateway. The ibm laptop is the vpn client. I kept getting "negotiating encryption keys with VPN server" "authenticating..." then the VPN server ip adress would change and again. "negotiating encryption keys with VPN server" "authenticating..." Internet browsing is ok on both laptops.
Don't have the option to "Check - Allow VPN to pass through a NAT device" as an option in the preferences tab.
I don't have a Net Firewall Service check box on the hp laptop network card but do on the ibm laptop.
Tried UNCheck - Negotiate UDP encapsulation with VPN tunnel server for NAT .... but no success.
There must be a way.
Thanks for any help. |
|
 harrysiii
join:2004-04-30 Manchester, NH
| reply to harrysiii If it means anything to anyone, I use the linksys WRT54G as well, and use wireless 128 WEP with my laptop.
I have no ports open or forwarded with my router - But I think that will depend on your ATT configuration. I have the "managed VPN" settings enabled on my ATT client. If you use other methods, mine may not help you out.....
just wanted to give you my configuration before any one says it wont work for them.
any questions, let me know. i may be able to help you out.
~harry |
|
 harrysiii
join:2004-04-30 Manchester, NH
| reply to Dmoto131 Hey all,
Just so you know, I have noticed in the updated version of att (even the 5.0's), that you can go into "start, programs, att, att managed client firewall" and UNcheck them in there.
Here is the reason why I was looking for the reg check, but this new option overcomes it (version 6 has this option as well, but we cant use that yet at work).
anyway, we have users that would get a major delayed response on their outlook, or no response at all unless they initiated a send/receive. I noticed that if you uncheck the net-firewall, this didn't happen. The problem was, when they went home with the net-firewall unchecked, they couldn't login to ATT.
So, I was looking for the ATT reg check so I could write a script to check/uncheck this automatically as needed.
Well, a few months back we noticed that version 6 had this managed firewall, and weeks later, version 5 got it through an automatic update.
if you keep the net-firewall checked in the NIC settings (so you can connect and dont get the 101 error), you can uncheck them in the ATT firewall software settings.
This option allows all your programs to work as if you dont have the net-firewall checked, but ATT connects because the net-firewall actaully is checked.
hope this helps some.  |
|
  Dmoto131
@gci.net | reply to harrysiii Thanks alot ... that "net firewall" did the trick perfectly. |
|
  paetyndog
@mindspring.com
| reply to Muffler Re: NIGHTMARE - AT&T Global Network Client + Links
AT&T dialer version: 5.09.2 English Linksys wireless: WRT54g
VPN worked fine over wired connection, but when I went over wireless, I kept getting "negotiating encryption keys with VPN server" "authenticating..." then the VPN server ip adress would change and again. "negotiating encryption keys with VPN server" "authenticating..."
It turns out my wireless adapter didn;t have the net firewall service checked. I reversed all the settings marked from previous threads and was able to connect.
Thanks to all for help and suggestions! |
|
  Sr Tech Premium join:2003-01-19 New Fairfield, CT
·Charter Pipeline
| reply to phife Re: NIGHTMARE - AT&T Global Network Client + Linksys
I use the ATT client through my wireless at home. I have found if I just run 64bitWep it works fine. If I try to go higher to 128 or use some other type of protocol I seem to have issues. This is just what I have experienced, I would try with just an open wireless connection first and see if you can connect with the client. If you connect then just try to enable wep or what ever flavor of wireless security and try again. Wish I could help more. |
|
 jebaxter
join:2004-10-06 Raleigh, NC | reply to phife I can connect perfectly using a wired connection on my D-Link DI 624 router, but when I try to connect through wireless, the client connect, but I cannot access any of the VPN services that I need (company email, intranet, etc.)...any suggestions? |
|
  DK007
@comcast.net | reply to phife The VPN connection is working at last. It turned out to be the firmware. The version on it was the first release for the BEFSR81 Version 3 router. The FW release notes spoke about packets passing and some DNS issues. |
|
  DK007
@comcast.net
| reply to phife I too am having VPN-hell. I've read the thread and tried the remedies mentioned, but still no luck. I have comcast cable modem, Linksys BEFSR81 V3 (FW 2.45.5) and AT&T Client 5.09.1. The VPN connection negotiates and connects. I can ping the VPN server shown in "Show Connection Status". I can also ping the IP address assigned to my PC. However, I cannot ping/telnet/http to anything on my VPN intranet. Nor can I access anything on the internet, until I disconnect. Once I disconnect the AT&T client, my internet connection is great. Any ideas? |
|
 esquiber
join:2001-02-26 Palatine, IL | reply to harrysiii Thanks Harry. This helped my 101 error issue as well |
|
  Steve_Tipton
@nextel.com
| reply to phife make sure you have the lateset firmware from linksys installed in your router and be sure to forward teh following ports IP port 50
UDP ports 500 and 4500
TCP ports 389, 709, 5080, 21, and 80
make sure you have enable IPSec passthru |
|
  jp79
@com.sg
| reply to ML Re: NIGHTMARE - AT&T Global Network Client +DLink
Millions thanks to ML, it solved my problem too on DLINK 624+.
Right mouse click on the client (away from the normal tabs) Select - Show login properties Select the preferences tab UNCheck - Negotiate UDP encapsulation with VPN tunnel server for NAT .... Save or Apply |
|
 djn12313
join:2004-07-09 Lewisville, TX
| reply to phife Re: NIGHTMARE - AT&T Global Network Client + Linksys
The never ending thread that saved my bacon.
Using the following components:
1. LINKSYS WRT54G on firmware version 2.02.8-security (this is the BETA fix they recently released).
2. AT&T Global Network Client (version 5.09.1).
The suggestion a few posts back to enable "Port Range Forwarding" on the additional ports of 5080-5080 and 3389-3389 fixed my inability to connect. I had enabled 500-500 already as well as 1723-1723 on a Linksys suggestion.
Strangely, the AT&T Global Network Firewall settings all "checked" still allowed it to work fine.
Tested the Client with the router's "DMZ" setting (Applications & Gaming > DMZ) both enabled and disabled. Both connected without issue.
Also, in the Global Network Client's "Show Login Properties" setting, I did have "Negotiate UDP Encapsulation with VPN server for NAT traversal" checked. And it worked.
The key appeared to be the port forwarding. With the correct entries it works like a charm.
Jorgen |
|
  kchan88
@att.com | reply to zenwork Was that through dialup or broadband.? |
|
  eire122
@ba-dsg.net | reply to Solution Re: NIGHTMARE - AT&T Global Network Client + Links
Dude that worked like a charm! |
|
  zenwork
@218.111.x.x | reply to phife Re: NIGHTMARE - AT&T Global Network Client + Linksys
I have just install the AT&T GLobal Network Client. Try connecting and NIGHTMARE from there onwards. As soon as it shows VPN Connection Establish, it reboot my computer. Tried it on XP, Win2k. Same thing happen. ANyone have any idea??? |
|