Home » Kerio User Forums » Kerio Control » upgrade 9.2.8 - problem tunnel vpn
  •  
Ufficio IT - ErreĆ  Sport

Messages: 9
Karma: 1
Send a private message to this user
hi
i have a secondary kerio firewall (9.1.5)
I have updated it to the latest version (9.2.8); the vpn tunnel that exists between this firewall and the main one (kerio 9.1.4) does not work.
Luckily I had a snapshot and I came back.

vpn compatibility issues?

thanks
  •  
ian.bugeja

Messages: 99
Karma: 9
Send a private message to this user
Hi

Kerio Control 9.2.8 introduces a new encryption mechanism for the VPN, however which Kerio Control is acting as the "server" in this case. Please update that one to 9.2.8 first.

Ian Bugeja
GFI Software
  •  
mwgbr

Messages: 40
Karma: 7
Send a private message to this user
Definitely no problems here with VPN when both sides are on 9.2.8.
  •  
JeriMind

Messages: 7
Karma: 0
Send a private message to this user
yes same problem here. control 9.28 connect to 9.27 don't work.
after upgrade the "server" to 9.28 - it works fine

I think this is a important info for changelog!
  •  
AlexVP

Messages: 1
Karma: 0
Send a private message to this user
Does this problem affect users with older VPN-client versions?
  •  
LittleIndian

Messages: 6
Karma: 0
Send a private message to this user
We encountered exactly the same problem, i.e. all VPN went down when we upgraded one of our firewall to v9.2.8

The solution is to make sure Kerio Control with version lower than 9.2.8 (the client) initiate the VPN connection to Kerio Control with version greater or equal to 9.2.8 (the server)

To do this, set the VPN mode as active on the client and passive on the server
  •  
nigelayres

Messages: 24
Karma: 0
Send a private message to this user
I am about to upgrade clients' servers to 9.2.8 but they have a number of remote users with older VPN client versions.

It is essential to know whether the new server version will block the older clients before I embark on the upgrade. The release notes don't mention this at all, as far as I can see.

Moreover, if a user had automatic upgrade set and the clients are indeed broken, this seems like a major oversight.

[Updated on: Thu, 29 November 2018 14:06]

  •  
ian.bugeja

Messages: 99
Karma: 9
Send a private message to this user
Older Clients will still work for version 9.2.8.

You can have client 9.2.7 and server 9.2.8 and VPN works.

While this works we encourage everybody to upgrade the clients soon.

Ian Bugeja
GFI Software
  •  
Ufficio IT - ErreĆ  Sport

Messages: 9
Karma: 1
Send a private message to this user
the tunnel vpn is ok if firewall (with v. 9.2.Cool is passive and firewall (with v.9.2.7 or older) is active!
the problem is that there must be some more detailed documentation especially when there are upgrades with important news.
And remember .....not everyone can upgrade all firewalls at the same time and in a short time!

thanks
Previous Topic: Why is TLS 1.0 still available?
Next Topic: System erros - automatic restarts
Goto Forum:
  


Disclaimer:
Kerio discussion forums are intended for open communication between forum members and may contain information and material posted by members which may be useful in learning about Kerio products. The discussion forums are not intended to provide technical support for any specific product. Any information implied or expressed in the discussion forums is that of the posting member. Kerio is in no way responsible for the information posted in the forums, or its accuracy. Kerio employees may participate in the discussions, but their postings do not represent an offical position of the company on any issues raised or discussed. Kerio reserves the right to monitor and maintain the forums to promote free and accurate exchange of information.

Current Time: Tue Dec 11 17:37:17 CET 2018

Total time taken to generate the page: 0.99658 seconds
.:: Contact :: Home ::.
Powered by: FUDforum 3.0.4.