x64 VPN Client that supports IPSec (Shrewsoft)

Sharky Forums


Results 1 to 6 of 6

Thread: x64 VPN Client that supports IPSec (Shrewsoft)

  1. #1
    Great White Shark
    Join Date
    Nov 2000
    Location
    Alpharetta, Denial, Only certain songs.
    Posts
    9,925

    x64 VPN Client that supports IPSec (Shrewsoft)

    So, we've been facing some "opposition" at work to moving to an x64 environment in general. People love the idea of more RAM to playwith, etc. but a lot of them are still stuck using certain tools.

    One of these tools is the Cisco IPSec VPN Client. This client is 32-bit only, and will never be ported to x64. Cisco's current claim is that if you want x64 VPN connections, you need to use SSL or DTLS with their new AnyConnect client. Anyconnect is great, and it works well, but each ASA we have is licensed for only 2 SSL connections, but we have licenses for over 20 IPSec connections. With that in mind I've been researching the options for x64 VPN clients. Didn't find much until recently I cam across Shrewsoft's VPN client. It's an open source client, is compatible with all versions of Windows, and seems to support everything we'll be needing.

    I don't know if it will work, or how well it will work, etc. I will find out when I start testing tonight. But considering that IPSec VPN connections are prevalent, I figured I would share what I found with all of you.

    ShrewSoft VPN client

    Crusader for the 64-bit Era.
    New Rule: 2GB per core, minimum.

    Intel i7-9700K | Asrock Z390 Phantom Gaming ITX | Samsung 970 Evo 2TB SSD
    64GB DDR4-2666 Samsung | EVGA RTX 2070 Black edition
    Fractal Arc Midi |Seasonic X650 PSU | Klipsch ProMedia 5.1 Ultra | Windows 10 Pro x64

  2. #2
    Invisible Modfish
    Join Date
    Dec 2000
    Location
    Georgia
    Posts
    2,690
    Would it be an option to go ipsec and just set up some good old open source openvpn clients for everyone?
    Insert ancient Sharky sig here
    [
    Prince Vindir of the OC Crusaders
    Holding Boundaries and Breaking Barriers

    ]

  3. #3
    Great White Shark
    Join Date
    Nov 2000
    Location
    Alpharetta, Denial, Only certain songs.
    Posts
    9,925
    Quote Originally Posted by Vindir View Post
    Would it be an option to go ipsec and just set up some good old open source openvpn clients for everyone?
    I suppose so. But isn't OpenVPN SSL connection based only anyway?

    *Edit: In house yes. In house we actually have the few of us on x64 OS's running the Cisco AnyConnect VPN client, using the SSL connections. Sadly, we do a lot of work for hire, and our customers tend not to update their software that often. That means needing to be able to connect to IPSec VPN's when needed.
    Last edited by James; 02-03-2010 at 08:03 AM.

    Crusader for the 64-bit Era.
    New Rule: 2GB per core, minimum.

    Intel i7-9700K | Asrock Z390 Phantom Gaming ITX | Samsung 970 Evo 2TB SSD
    64GB DDR4-2666 Samsung | EVGA RTX 2070 Black edition
    Fractal Arc Midi |Seasonic X650 PSU | Klipsch ProMedia 5.1 Ultra | Windows 10 Pro x64

  4. #4
    Invisible Modfish
    Join Date
    Dec 2000
    Location
    Georgia
    Posts
    2,690
    Yeah, dumb on my part, openswan is the ipsec one.

    What's running on the serverside that you guys are trying to connect to? I was reading it as though you're looking for an end-to-end kind of solution originally. Openswan has info on their wiki for using the toolset to connect to different vendor's implementations and the native windows ipsec for xp sp2+ is always an option on the windows boxes. Sounds like you're looking for an actual purpose-built client though.

    Any luck with shrewsoft so far?
    Insert ancient Sharky sig here
    [
    Prince Vindir of the OC Crusaders
    Holding Boundaries and Breaking Barriers

    ]

  5. #5
    Great White Shark vertices's Avatar
    Join Date
    Sep 2000
    Location
    Palm Coast, FL
    Posts
    6,001
    Are these techs or users? At my company, we only VPN from VMs. It's so much easier all the way around.

  6. #6
    Great White Shark
    Join Date
    Nov 2000
    Location
    Alpharetta, Denial, Only certain songs.
    Posts
    9,925
    Quote Originally Posted by Vindir View Post
    Yeah, dumb on my part, openswan is the ipsec one.

    What's running on the serverside that you guys are trying to connect to? I was reading it as though you're looking for an end-to-end kind of solution originally.

    Any luck with shrewsoft so far?
    Quote Originally Posted by vertices View Post
    Are these techs or users? At my company, we only VPN from VMs. It's so much easier all the way around.
    They are programmers, so sort of techie, but prefer to have stuff that just works. Half of them currently run Mac's, so they actually have Windows XP VM's that they VPN in from.

    As for the other end, most of our clients have Cisco VPN concentrators, very old ones. This means IPSec only, and it means they are loathe to change, as they invested very very large amounts of money into the Cisco solution.

    So far no luck with Shrewsoft, but that's because I need to sit my work laptop down next to my home PC and go through the settings. Shrewsoft offers a plethora of options, which without knowing exactly what is needed for our Cisco Concentrator (the in house one I'm testing against), it makes it very hard to establish a connection.

    I should know more tonight, part of my playing around with this software has been derailed by me playing around with Mass Effect 1 in an attempt to "finish" a save for ME2.
    Last edited by James; 02-04-2010 at 11:42 AM.

    Crusader for the 64-bit Era.
    New Rule: 2GB per core, minimum.

    Intel i7-9700K | Asrock Z390 Phantom Gaming ITX | Samsung 970 Evo 2TB SSD
    64GB DDR4-2666 Samsung | EVGA RTX 2070 Black edition
    Fractal Arc Midi |Seasonic X650 PSU | Klipsch ProMedia 5.1 Ultra | Windows 10 Pro x64

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •