[Q][HELP] VPN with DD-WRT - Captivate Q&A, Help & Troubleshooting

i recently purchased an rt-n12 router and i flashed tomato and then dd-wrt - while i like tomato it seems dd-wrt has more features and far superior documentation
while said documentation is handy, i cannot seem to figure out how to set up a vpn that works with my captivate - i think i'd prefer the certificate method over the pptp method but i couldnt get certificates to work - i got pptp to connect but it didnt seem to have done anything useful (my device does not seem to be reachable by other network devices)
anyone have any luck with this?

Related

Any VPN client compatible with Cisco VPN concentrator?

In my office, we use a Cisco VPN concentrator with OTP.
I tried to connect this afternoon using my soft token to generate a key, to no avail. I suspect the MS IPSec/L2TP implementation.
Anyone has a client working on WM5?
Cheers,
Hal
There are a few around, i'm about to start testing any / all that i can find as my work are about to replace our local PPTP VPN server with the Cisco Concentrator setup at our head office.
So far, i have only tested one, with limited success - Bluefire Mobile Security VPN: http://www.bluefiresecurity.com. This client was able to connect and authenticate using the group authentication however it failed at obtaining an IP Address. They at least have a trial version available for download so I was able to test it without having to pay
As i test more VPN clients, i'll post my results in this thread and it would be great if others could do the same as i really want to get this working.
Cheers,
Chris
Hi,
I've used Bluefire (Trial version) for a few days with Cisco Gateway of my Company, and it worked perfectly.
The only limitation is that when connection is lost (it happens very often in mobility) the sw is not capable to resume the connection, so you have to digit usr/pwd again..
"Me too!"
Here is a post with my experience on BlueFire - http://forum.xda-developers.com/viewtopic.php?t=52386
Did you find anything better for IPsec VPN for WM5? Thanks.
Problem with IP tunnel address on bluefire here. I did speak with Dennis Komisky who is the CTO of Bluefire at MEDC and he mentioned that the latest version fixes many Cisco related issues.
Alas, when I fired up the latest trial although it did correctly auto sense and set up my DH pairs, I still had the IP tunnel address issue. Unfortunately, I haven't had time to pursue this though even though Dennis told me to contact support and drop his name if I had problems....
Sleuth255 said:
Problem with IP tunnel address on bluefire here. I did speak with Dennis Komisky who is the CTO of Bluefire at MEDC and he mentioned that the latest version fixes many Cisco related issues.
Alas, when I fired up the latest trial although it did correctly auto sense and set up my DH pairs, I still had the IP tunnel address issue. Unfortunately, I haven't had time to pursue this though even though Dennis told me to contact support and drop his name if I had problems....
Click to expand...
Click to collapse
Hmm, and I got a completely reverse experience - I can connect with BlueFire to our corporate Cisco VPN w/o a problem (I had to manually set IKE/IPSEC parameters though) and absolutelly cannot connect with AnthaVPN... I wish their log messages were more detailed.

reverse tether, ad-hoc, on mac filtered network?

I have a rooted N1 with cyanogen 5.0.4.1 on it.
I'm studying abroad this semester, and the university I'm at seems to have done everything they could to prevent me from connecting my phone to the internet on their network.
There is a wireless network, but it doesn't reach my room, and there's a proxy; I haven't been able to get any of the various proxy apps to work with it, at all. On a somewhat related note, since moving to cyanogen I'm not able to connect to that network anymore (wpa enterprise, tls/pap/user+pass). No real loss, since it didn't work as I couldn't get the proxy going.
The rooms have ethernet, with a static IP and mac filtering, and of course the same proxy. In addition, on the wired network in the rooms you have to connect to a vpn in order get anything other than the school's intranet
With cyanogen's rom, I have been able to connect my phone to my computer's ad-hoc network by giving it the parameters (IP, gateway, netmask, dns), that were provided to me, but I can't download anything. My only guess as to why that's not working is their static IP/mac filtering combo is not playing nicely.
I haven't ever delved very deeply into networking type stuff such as proxies, ssh tunnels, etc, so these two ideas of mine could be completely unworkable, but what I've been able to come up with is:
1. Is there a way to have my laptop keep handling all the proxy/ip/vpn nonsense, and just route http data to and from my phone? I've never dealt with ssh or anything of that sort, but I run linux so it should be pretty trivial to get it set up on the laptop's side of the equation.
2. Failing that, I'm allowed to have 3 devices with 3 different mac addresses, each of which is given a separate IP address, so I give the people in charge of the network the mac address for my phone and get an IP address for it. Then, connect to my laptop's ad-hoc network, which is on IP #1, and go to the advanced wifi settings on my N1 and set up a static IP with IP #2. Does that work, at all? This of course doesn't account for the vpn at all, but if it does in fact work I'd then move on to that.
What a ****ing brain-buster. Goodluck!
As an update, I can use cyanogen's included tethering ability, in conjunction with ConnectBot, to ssh from my phone to my computer (got that working after a bit of work, and learned something new). However, when I try to set up port forwarding in ConnectBot, it doesn't work; I don't know which ones to forward, whether to choose local or remote, and if I try to forward something below 1024 it gives me an error because of that. Does anybody know what ports I need to forward, and how to do that properly with ConnectBot?

PPTP VPN with nexus one

Hi all,
I've been trying to get PPTP VPN to work for my nexus one a while now. However, I always receive the "server hang up" error. I tried my university VPN last few months, and ProXPN service just recently. Both are set up and run just fine on my laptop. I'm on CM 5.0.8 and connecting using wifi. I've read somewhere that the pptp client in 2.1 is buggy. Is it still the case with CM5.0.8?
Thanks!
Any help at all?
I wish I could offer help but I can't. I am in the same situation with my work VPN. At first I thought it may have been that NAT-T wasn't enabled on the VPN server (since Tmobile connections to VPN seem to need that) but it wasn't the case. A co-worker of mine has a MT3GS unrooted and his VPN connects flawlessly. I am wondering if there is something in the HTC Kernel that makes it work better. Maybe you should check to see if NAT-T is enabled on your VPN servers? Good Luck!
**Update**
When you put in your username try adding a space to the end then immediately delete it. then enter your password as usual.

Cisco VPN - Anyconnect ?

I've searched many treads and also put up a few posting in the past.
I know Anyconnect is not available for the Xoom/Andriod OS at this time, but has anyone found an "easy" way to connect to a Cisco VPN system.
I was able to install certs as needed and tried a few workarounds, but no luck.
This is the a must have for me and I know a lot of others.
Any suggestions would be appreciated.
I was able to get my Cisco VPN to connect by rooting and using VPN Connections.
[email protected] said:
I've searched many treads and also put up a few posting in the past.
I know Anyconnect is not available for the Xoom/Andriod OS at this time, but has anyone found an "easy" way to connect to a Cisco VPN system.
I was able to install certs as needed and tried a few workarounds, but no luck.
This is the a must have for me and I know a lot of others.
Any suggestions would be appreciated.
Click to expand...
Click to collapse
Inphinitizeit said:
I was able to get my Cisco VPN to connect by rooting and using VPN Connections.
Click to expand...
Click to collapse
Thanks for the response...
Couple of questions
You mentioned rooted? Did you change kernel also?
3g or Wifi model? (I have Wifi)
When you say VPN connections, do you mean a app or the stock connect in the system?
Did you tranfer your certificates to the Xoom?
Sorry for all the questions. I've had a Gtab since November and just picked up a Xoom after holding out for a month.
Glad I made the purchase.....
[email protected] said:
Thanks for the response...
Couple of questions
You mentioned rooted? Did you change kernel also?
3g or Wifi model? (I have Wifi)
When you say VPN connections, do you mean a app or the stock connect in the system?
Did you tranfer your certificates to the Xoom?
Sorry for all the questions. I've had a Gtab since November and just picked up a Xoom after holding out for a month.
Glad I made the purchase.....
Click to expand...
Click to collapse
I should mention the Cisco VPN I'm connecting to only uses grou passwords
I'm using the 3G model, and it is rooted with the tun.ko module available from http://forum.xda-developers.com/showthread.php?t=972550&highlight=tun.ko.
VPN Connections is a root app available from http://code.google.com/p/get-a-robot-vpnc/
Inphinitizeit said:
I should mention the Cisco VPN I'm connecting to only uses grou passwords
I'm using the 3G model, and it is rooted with the tun.ko module available from http://forum.xda-developers.com/showthread.php?t=972550&highlight=tun.ko.
VPN Connections is a root app available from http://code.google.com/p/get-a-robot-vpnc/
Click to expand...
Click to collapse
Thanks! I'll give it a try.....
Sent from my Xoom using Tapatalk
The problem is, that the VPN Connection with anyconnect is totally unstable and with all the other Cisco VPN-concentrators its the same problem. That is the result of how android is programmed. i Tried to get a stable cisco-vpn connection on a nexus one, nexus s and optimus speed. All failed. You had to copy a tun.ko file, specific for the phone. then you where able to connect to a normal cisco vpn concentrator (not anyconnect concentrator). but that worked only once. every time after that, the vpn connection was so unstable i could only get it up for some secounds. thats why i bought an iPhone as smartphone and use the xoom as tethering.
what i want to try the next few days is, connect with the free iOS Any-Connect / VPN protocoll on the iPhone and then tether my xoom to use the same connection there. dunno if it will work
Inphinitizeit said:
I was able to get my Cisco VPN to connect by rooting and using VPN Connections.
Click to expand...
Click to collapse
So far, that is the only way I can get a "connection." However, there does not appear to be any traffic going across the connection and VPN Connections hangs when I try to disconnect. Any suggestions? Thanks.
I've also had no luck connecting to my work VPN. We use Cisco Anyconnect and SecurID. The Cisco rep has been saying a client is in the works but nothing so far. This is the only think keeping the Xoom from really being a laptop replacement for me. Sucks.
Agreed!
Sent from my Xoom using Tapatalk
I can't connect either but my setup is a little different. I log into Cisco SSL VPN Service through the website, which requires UN/PW/Group. When connecting for the 1st time on a device, it downloads and installs the VPN client. Through this method it performs:1)Platform Detection; 2)ActiveX; 3)Java Detection; 4)Sun Java; 5)Download & 6)Connected. But when signing in using my Xoom it hangs at step 5(Download). It displays a link, Linux i386, but it does nothing when clicking on it. Does anyone have this file or know a way around this?
The problem is google wont allow cisco into the kernal. The app is done at Cisco, but google is holding up the show. Cisco also has a new light weight vpn client that is more of an on demand app that will work with Jabber. (which works on xoom, i have it loaded)
What is the name of the light weight app that works on the Xoom?
vzontini said:
I've also had no luck connecting to my work VPN. We use Cisco Anyconnect and SecurID. The Cisco rep has been saying a client is in the works but nothing so far. This is the only think keeping the Xoom from really being a laptop replacement for me. Sucks.
Click to expand...
Click to collapse
if you flash the tiamat kernal and install the tun.ko you should be able to use the updated VPNC to connect just fine. i use my SecurID with this same setup and tunnel in daily for work. it sure does beat carrying a laptop around.
Also, Office chat is a office communicator app if your work uses it. basically i never have to carry a laptop around. I also use evernote. Onenote is great but evernote stores in the cloud and syncs to my phone, laptop, and xoom instantly will no setup necessary. Try it out.
Thanks for the tip Holsum. My Xoom isn't rooted yet but I'll investigate for my NexusOne which is already rooted and I'm very familiar with hacking on it. I'll give your suggestion a try and see if it helps.
When I run the vpn widget and test prerequisites it says that it doesn't have root. I am rooted running the newest tiamat kernel and the superuser app popped up and allows me to grant the app root... any idea why it thinks it doesn't have root?

[Q] L2TP/IPSEC VPN settings for server

Hi,
I'm wondering if anyone could help me with the settings that I need to implement for L2TP/IPsec to work with my HTC One?
Basically I have 3 handsets with versions 4.2, 4.3, 4.4 of Android and need to get VPN functionality working.
Previously I was using OpenVPN which worked fine but then version 4.4 of Android managed to break things so the OpenVPN Connect app doesn't work any more.
I think what I'm stuck on is which encryption type works and also authentication type should be?
My server runs OpenBSD so I don't know if anyone has had any luck with that but my current settings are:
main: hmac-sha1 with encryption type aes and modulus of 1024
quick: hmac-sha1 with encryption type aes and psk
I've had a look at some Cisco documentation to try to figure out the necessary settings which are actually the ones above... however I keep getting the error that the "Phase 2 ID's don't match"/
Would someone be able to share their working config experiences so that I can get my handsets to connect?
Basically the issue I'm having is not with the handset but figuring out how to configure the server to get the handset to connect.
Thanks.

Categories

Resources