Chris Kasten in his Solo Technology blog says he spent 7 hours attempting to get a Cisco VPN Concentrator to establish a LAN-to-LAN VPN tunnel with a Symantec firewall. He writes:
I spent so much time [ _____ ] around with various permutations of MD5, SHA, ESP, 3DES and all the acronym soup involved that I never even thought to disable PFS.
I don’t really know what it does. I don’t really know if I want it. I just know that things work quite well without it.
Does this kind of thing happen to you too?
Go to Cisco Subnet for more Cisco news, discussion forums, security alerts and book giveaways.




