ISEKI CISCO SYSTEMS OL-5450-10 User Manual

Page 86

Advertising
background image

Caveats Resolved in Release 4.0

86

Release Notes for VPN Client, Release 4.0 through Release 4.0.5.D

OL-5450-10

In this case, the VPN Client is installed on a PC with Smartcard-based
certificates or Entrust Entelligence-based certificates. The VPN Client
attempts to enumerate the list of installed certificates, including ones that are
Smartcard- or Entelligence-based and may prompt the user.

CSCdz26449

On the Release 3.7 VPN Client Mac GUI, on a new installation of the VPN
Client, the “Edit Settings” button launches the “Logging Options” window.
When you do this, all logging levels are set to 3 by default. However, the
vpnclient.ini logging levels are set to one. The default button is “Cancel”. If
a customer presses the Enter key, the levels stay at 1.

The Logging Options window does not read from the vpnclient.ini file.

CSCdz29463

Using the Release 3.7 VPN Client, there is a parameter in the pcf files that
controls whether the VPN Client allows the use of split DNS when connected.
This value should default to 1, which means enabled. It currently defaults to
0, which makes the feature appear broken. Setting it to 1 in the pcf allows split
DNS to function.

CSCdz38680

This issue applies only to the Release 4.0 VPN Client and only with Virtual
Adapter (Windows 2000 and Windows XP). The VPN Client’s local network
happens to be of the same IP subnet as the remote private network. When a
VPN connection is up data meant for the private network stays local; for
example, 192.168.1.0/255.255.255.0

CSCdz40609

In a Windows 2000 or Windows XP environment, if the public network
matches the private network (for example, a public IP address of 192.168.1.5,
with a subnet mask of 255.255.0.0, and an identical private IP address) and
the public network's route metric is 1, then traffic might not be tunneled to the
private network. The same problem can occur if you are using a virtual
adapter and the public metric is smaller than the virtual adapter metric.

CSCdz48154

If the parameter “StatefulFirewallAllowTunnelTraffic=0” is placed into the
the [main] section of the vpnclient.ini and Stateful Firewall (Always On) is
enabled, no inbound or outbound tunneled traffic will pass. Either remove this
setting from the vpnclient.ini or set it to “=1”.

Advertising