Specifications
OmniAccess Reference: AOS-W System Reference
542 Part 031652-00 May 2005
Troubleshooting the Connection
If you have trouble connecting to the Alcatel Wireless LAN switch using a
typical third-party VPN client, check the following:
z Verify the ACL groups in the “logon” role.
z Verify that TCP port 17 is allowed (this solves a banner problem).
z Verify the IKE key is matching.
z Verify that Group ID is defined.
z Verify that the IKE policy is pre-shared key.
If you need further assistance, see “Contacting Alcatel” on page xxi for
support.
The setup for Cisco is actually the same as for Alcatel VPN (w/o dialer). You can
ignore input of the XAuth groupname (that's just for show). To include AES-256, you
need to (assuming GUI):
1. Navigate to Configuration->Security->VPN Settings->IPSEC:
2. Add an IKE policy with AES-256, pre-share, and SHA.
3. Navigate to Configuration->Security->VPN Settings->Advanced.
4. Add or change the IPSec transform to AES-256 and SHA.
NOTE—Cisco does not support AES-192 (only 128 and 256.