WM 5.0 VPN Client from Bluefire - JASJAR, XDA Exec, MDA Pro General

Hello,
on my search for a VPN Client for WM 5,0 I finally
found one. It´s Only a Trial-version but however it is the
only version i found that will be able to run under WM 5.0. If you know still different VPN software, which runs also under WM 5.0 please post it!
https://locustpoint1.bluefiresecurity.com/support/WM5_VPN/Bluefire Mobile VPN 2.2.0.190 wm5.exe
User: bfdownload
Password: 2$fireblue
Much fun!

Password not woring :-(
would like to try if possible..

Oh, they have closed the Download-Page...
See attachment!

AnthaVPN is also working on Wm5.
I should have been released a week ago (according to an e-mail I just received), but no info can be found on the website. :-(

This is interesting. I tried Cisco VPC, Antha VPN and Bluefire VPN on my Jasjar and in all cases the programm blocks both the phone mode and the GPRS/UMTS mode, even when the programm is switched off.
Only deleting the programm completely will restore both radio functions.
Any other experiences?

cyberdott said:
Oh, they have closed the Download-Page...
See attachment!
Click to expand...
Click to collapse
BLUEFIRE
IT works (on QTEK9000) with CISCO Gateway of my company;
ANTHAVPN
here the answer received today:
Dear sir,
We are in certificate process with Microsoft. We hope to release within two weeks. Thanks for your interest.
Regards
José González
Worldnet21 VPN Support

BLUEFIRE
IT works (on QTEK9000) with CISCO Gateway of my company;
Can you explain where and how you installed the program and and how you configured the settings. :lol:
Thanks

I installed the EXE downloaded in this thread; I used the usr/pwd (demo account) above.
The configuration reflects the params of my company's VPN (group, user, ike, IPSec...).

Working:
NCP Secure CE Client with a Cisco PIX
English page a little bit behind, german news say its working (and it does )
News-Link(german):
http://www.ncp.de/deutsch/home/shownews.html?show=38
Download Link:
http://www.ncp.de/english/services/testsoftware/index_entry.html
=) Georg

a little question...
does the 3 party vpn replace the ¨built in¨ vpn?
I use it with exceptions and my companies intranet adressers and servers..in the "connects to work" settings.
so if I installs a vpn from another company can use them settings there or how does the internet explorer or outlook connect to my intra net??
manually is not an optiion i think!!

ANTHAVPN beta 5.8
d.zee said:
This is interesting. I tried Cisco VPC, Antha VPN and Bluefire VPN on my Jasjar and in all cases the programm blocks both the phone mode and the GPRS/UMTS mode, even when the programm is switched off.
Only deleting the programm completely will restore both radio functions.
Any other experiences?
Click to expand...
Click to collapse
I received anthavpn beta version 5.8 for the WM2005, installed it on my JASJAR and I had to deinstall as I can't power ON the WLAN/WIFI. As d.zee, deleting the program WLAN/WIFI works on its normal behaviour...
Has anybody received also this beta version and played with it successfuly?

I had trouble installing bluefire to my SD card. Once the install was complete, it created a directory in my device called \Storage Card and renamed my SD to \Storage Card2. As you can imagine, this caused some issues. I had to go into and edit the registry and update the log file paths to \Program Files, remove the \Storage Card directory, and reset the device. Once I did that, my storage card came back, and I was still able to use the bluefire client.
Not sure if this helps anyone.

unstalling VPN BlueFire
Just to let you know, folks.
Unistalling Bluefire from an SD card is quite a nightmare.
I tried doing it from the "remove programs" on the JJ and from the ActiveSync removal tool... but no way..
When I contacted somebody from Bluefire I was answered that there was a problem with SD cards, that the problem was explained in the product documentation -never saw it when downloading the demo- and that their recommendation was to uninstall the software by hard resetting the machine!!...
A suggestion from the Support guy was to install it again -on the device- and the uninstall the whole thing... he was not sure it would clean the registry, etc.
Just to let you know

Related

Universal can't connect to Windows Server 2003 - solved

Hello!
I have a Universal in german from T-Mobile Austria and a BlueAngel also from T-Mobile Austria. As we all know the Universal has the new OS Windows Mobile 5.0, the BlueAngel has Windows Mobile 2003.
So and there is a BIG difference between these two OS (OR A BIG BUG, I don't know).
The problem is: With the file-explorer (or Total Commander 2.0, which i prefer) you can connect with WLAN to a share on a computer. Enter the UNC-path under path in the file-explorer, the device asks for a login and it works. So it is unter Windows Mobile 2003 with the BlueAngel. And it doesn't matter to which computer I will connect: to my server with Windows Server 2003 or to my workstation with Windows XP. I enter my domain account and it works.
On the Universal it doesn't work when I will connect to my server with Windows Server 2003. It's absolutely impossible to connect to a share on my server. BUT I CAN connect to a share an my workstation with Windows XP WITH MY DOMAIN ACCOUNT. So what I see in the moment: The NTLM-authentication works because I can connect to any Windows XP with a domain account, but the connection to a share on a server with Windows Server 2003 fails. And this only with the Universal, because in the same time with my BlueAngel it works.
My question is: Has somebody the same ugly problem or maybe I do somethimg wrong, I don't know.
And that's the reason why I can't change my device in this moment and why I love my BlueAngel.
Best regards, Peter
i to have this issue, i can map to xp shares no probs but win2003server shares just loops on the password screen.
big issue for me this
w2k3 issues
Click to expand...
Click to collapse
I had the same issues on w2k3-server before installing the latest updates.
After new W2K3 installation and newest updates: no problems.
The problem could be active directory.
Have a look to "NetBIOS over IP" at IP-settings. Resco Explorer can't map UNCs, only NetBIOS-names, it's my monitoring.
Greetings, Gerd Dubrand
that dosent fix the problem, just tried it, it worked fine on my BA but not on JJ.
I also cannot connect to my Win2003 server via jasjar, but I can connect to my win2000 advanced server. Win2003 server is sbs2003 with all updates applied. Can connect to both via my pda2k. Interesting?
IS the server a DC? you may need to disable the 'Microsoft network server: Digitally sign communications (always)' setting the default DC GPO - http://support.microsoft.com/kb/823659. This is enabled by default for DC's and acan cuase issues when talking to downlevel clients (I've had this problem with samba clients.
It mayalso be set in the local secuirty policy.
But then again this might not be anything to do with it...
Anything in the logs on the server?
GOOD IDEA, TINTOY!!!
Thank you for your samba server and your idea, tintoy. Your hint works!
For all others aigan the solution:
On a Windows Server 2003 domain controller you have to disable 'Microsoft network server: Digitally sign communications (always)'. I haven't this done by Active Directory, i have this done by 'Security settings for domain controller' -> 'Security Options' in 'Management'.
Note: Please excuse when I don't have used the correct names, because I have only a german version of the Windows Server 2003 and I don't know the exact names of the program groups of the english version. But I hope you know, what I mean.
Thank you aigan tintoy, this problem is solved!
See you all again here,
Peter
I confirm this,
network server: Digitally sign communications (always)
change to disabled in the Default Domain Controller Security Settings.
This has just made my day. odd how wm5 is apparently newer but dosent quite work out the box like wm2003 did
np ;-)
Exchange 2003 not connect with mobile 6.1
Someone can write a detailed description ? I have the same problem.
Thanks

VPN Client For Cisco Concentrator

While I was looking for a *working* VPN client solution to work with a Cisco concentrator, I found a couple of potential solutions:
1. Bluefire VPN client (http://www.bluefiresecurity.com/)
2. AnthaVPN (http://www.anthavpn.com/webmaker/portal/wmlink_360)
Both claim to work with the Cisco concentrator (3000 series to be precise). Before I go ahead and install either/both on my MDA Pro (with Imate ROM), I was wondering if anyone had any good/bad things to say about the software?
Any help would be appreciated.
here's an update:
I went ahead and installed the BlueFire VPN client. In general, the installation was a breeze. The UI is also nice and elegant. The configuration isn't too obtruse, either, except I can't get it to work with my Cisco concentrator! It would authenticate with the server fine, but would always choke on "IKE phase 2", which I think is when the client and server negotiate on the IPSec security association (SA) parameters.
I've tried several combination of IPSec configuration on both client and server to no avail. The server throws the following error on every login attempt:
39019 03/29/2006 14:04:59.840 SEV=4 IKE/0 RPT=575 192.168.51.120
Group [***obfuscated***] User [***obfuscated***]
All IPSec SA proposals found unacceptable!
Anyone got any suggestions on how to get around this?
rukna said:
here's an update:
I went ahead and installed the BlueFire VPN client. In general, the installation was a breeze. The UI is also nice and elegant. The configuration isn't too obtruse, either, except I can't get it to work with my Cisco concentrator! It would authenticate with the server fine, but would always choke on "IKE phase 2", which I think is when the client and server negotiate on the IPSec security association (SA) parameters.
I've tried several combination of IPSec configuration on both client and server to no avail. The server throws the following error on every login attempt:
39019 03/29/2006 14:04:59.840 SEV=4 IKE/0 RPT=575 192.168.51.120
Group [***obfuscated***] User [***obfuscated***]
All IPSec SA proposals found unacceptable!
Anyone got any suggestions on how to get around this?
Click to expand...
Click to collapse
Did you uncheck PFS (Perfect forward secrecy) flag ? I can connect with this flag unchecked and compression algorithm=none
rukna said:
here's an update:
I went ahead and installed the BlueFire VPN client. In general, the installation was a breeze. The UI is also nice and elegant. The configuration isn't too obtruse, either, except I can't get it to work with my Cisco concentrator! It would authenticate with the server fine, but would always choke on "IKE phase 2", which I think is when the client and server negotiate on the IPSec security association (SA) parameters.
I've tried several combination of IPSec configuration on both client and server to no avail. The server throws the following error on every login attempt:
39019 03/29/2006 14:04:59.840 SEV=4 IKE/0 RPT=575 192.168.51.120
Group [***obfuscated***] User [***obfuscated***]
All IPSec SA proposals found unacceptable!
Anyone got any suggestions on how to get around this?
Click to expand...
Click to collapse
Did you uncheck PFS (Perfect forward secrecy) flag ? I can connect with this flag unchecked and compression algorithm=none
Did you try the VPN client from APANI
There is a trial version for CISCO VPN 3000 Series for PDA and Mac
http://www.apani.com/vpnclients.html
italos said:
Did you uncheck PFS (Perfect forward secrecy) flag ? I can connect with this flag unchecked and compression algorithm=none
Click to expand...
Click to collapse
I tried that already, didn't work. It may just be issues with the configuration on the concentrator. I'm going to play with it this weekend to see if I get anywhere. Thanks for the reply, nonetheless.
pierrelp1 said:
Did you try the VPN client from APANI
There is a trial version for CISCO VPN 3000 Series for PDA and Mac
http://www.apani.com/vpnclients.html
Click to expand...
Click to collapse
I filled out an eval request yesterday with Apani and got the instructions to download the client this morning. I'll install it over the weekend to see if it works "out of the box". Thanks for the suggestion, dude!
It appears that Apani doesn't really support the universal. Got the following from one of their support reps. Back to the drawing board, I guess.
The Client does not support the use of Windows Mobile 5. We currently
support Windows Mobile 2003 only.
Sincerely,
Janet
Apani Networks
[email protected]
714-674-1700
Click to expand...
Click to collapse
Bluefire VPN
be careful when installing Bluefire... It is a mess if you install it on the SD card..
it's a nuisance to uninstall it... all advice i got from "Bluefire support" was to try a hard reset.... most helpfull
(apparently this problem is well explained in their "product documentation"... but no solution has been found.. yet
NCP Secure Entry Client works
Have a working environment against a CISCO-PIX with NCP
http://www.ncp.de/english/services/testsoftware/index_entry.html
=) Georg
I got the BlueFire client to work finally! I had to enable the PFS (Perfect Forward Secracy) on the concentrator along with the encryption set to 1024 bits on my group profile.
After I got past that, I got the DirectPush client to work with my exchange server! Now I can confidently say this phone has been worth it for me!
OpenVPN
FYI - I just came across this openVPN port for windows mobile and thought it might be of interest for some of you guys:
http://www.ziggurat29.com/OVPNPPCAlpha/OVPNPPCAlpha.htm
Its still in the alpha stage and is continually being worked on by the author, David G. Lemley, III
I am in the same boat - need to use IPsec VPN to connect to our corporate Exchange server.
I am testing BlueFire 2.3.0 client for more than a week now. Overall it is very good - it does its job done. But after running it extensively for a week I discovered several issues with it, mostly cosmetic, but they are really annoying. Especially, if you want to have Direct Push. Those issues are:
1. "Save credentials for auto-reauthentication" does not work - you have to enter your password every time you connect.
2. It does not reconnect on its own, if it looses the connection (i.e. EDGE/GPRS goes down temporarily)
3. Detection of disconnect is not very reliable - sometimes when you loose signal and GPRS connection wants to disconnect, it cannot do it because of VPN still thinks it is connected and prevents GPRS from reconnecting.
4. Extensive use of on-screen push-buttons instead of soft-keys. And soft-keys are mapped to rarely used functions, like About - poor interface design. It woldn't be so bad, if the VPN client was not requiring user interaction to reconnect and authenticate...
5. After several minutes of standby, it brings its window on top of Today screen, kinda like letting user know that he better check his tunnel/connection, because it could be already disconnected... In most cases it is not true, because the unit wakes half the way up every several minutes to check email or sent a heat-beat packet, which keeps connection up (this only applies to GPRS/EDGE connection and not WiFi, unfortunatelly). But sometimes the VPN tunnel becomes dead, and you have to click "Disconnect", "Connect" and enter your password again.
Ok, that is my impression about BlueFire VPN client. Now the question is - is there any better IPsec client for PPC (WM5), which allows you to have Direct Push email over IPsec all day long without your intervention to check the connection status and reconnect manually?
Thanks for your time.
Im also trying to connect to our corporate network using a vpn client.
with my laptop i usually do this with the cisco vpn client and a very simple configuration.
My target is doing the same with the universal.
I tried Bluefire VPN, and AnthaVPN.
Eventhough i tried a lot of times, i couldn't make a connection with bluefire
With Antha, the results were better. I could connect , but after installing it, wifi stop working, and the active sync, sometimes doesnt recognize the device ( i saw in this forum somebody with exactly the same problem).
Is there anybody that use Antha in Universal without problems?
I checked the official web of Antha, and universal is not supported.
Do you know any other vpn software that works with Cisco?
Thanks

vpn client?

hey guys,
am trying to connect to my office's VPN with my vario II. the default software provided does not seem sufficient. for one, i have one of those security key ring things which means my password changes every time i want to connect.
my pc uses cisco's vpn client...
any ideas? right now i'm just synching my exchange server with my pda using activesync, but wouldnt' midn having it on the go! there's no "external" access as such for the exchange server - it does have a web front end but its highly customized and isn't as easy as just configuring it as an external data source on my pda...
This one works perfect for me..
http://www.ncp.de/english/download/testsoftware/index.html
We use AnthaVPN at my university and it's supposed to work quite well with Cisco concentrator gateways, but be warned, if you have the latest 3.3 aku, you might run into problems like I did regarding loosing 3g internet connectivity on your hermes. However it could have just been a fluke as I didn't bother trying a fresh install of antha after a hard reset or anything since 3g is just as fast as my universities wireless internet anyways
Hope this helps
You can also try Bluefire. They have a 30 day fully functional trial version.
Find out more Here
Applestar said:
http://www.ncp.de/english/download/testsoftware/index.html
Click to expand...
Click to collapse
I have installed this but can't see any way of configuring the VPN connection. How did you configure it?
You have to use the PC client in order to create a configuration file and then transfer the file to your device
duh!
thanks!
bluefire is amazing. i bought it.
I came close to getting bluefire to work on our Cisco network... But once connected it would not transfer data.
I read on a seperate post here that alledgely the medianet unlimited plan uses the wap.cingular access point. That point is NAT based and some vpn clients do not like that... So they refuse the connection based on changing ip addresses.
I am not a networking expert so I do not know if this is in fact the case.
I do know I tried every freakin setting for bluefile and could not get a vpn tunnel from my phone to our Cisco vpn... So I gave up!
NCP
Could I get more specific infos about bluefire? They wanted a 5 page survey before they would send me a (business) trial.
Well, NCP Secure Entry VPN Client works perfect for me with Lancom and other standard firewalls. And yes, configuration is made with a Win XP Desktop Application. Nice about this: They got a Desktop VPN client as well which will be configured exactly the same way. So if you got a working setting for your Laptop you can manually copy the settings and they will work on the PPC as well - thats what I did.

PPC 6700 Unable to Map Drives

I have had the same problem with my PPC 6700 running WM5 and WM6.
I have installed the HTC Network Plugin CAB. I can see the servers on my network (all thru WIFI). When I select the server, it prompts me for my user ID, Password, and Domain (click save password). I click OK and it comes back requesting login info again and again and again.......
I have the same issue from Pocket File Explorer when I open a path to the //server/share!!!!!
I have a Dell X30 running WM 2003 SE and I can access all of my shares with no problems on the same network!!!!!
What am I doing wrong?
Pdiminico said:
I have had the same problem with my PPC 6700 running WM5 and WM6.
I have installed the HTC Network Plugin CAB. I can see the servers on my network (all thru WIFI). When I select the server, it prompts me for my user ID, Password, and Domain (click save password). I click OK and it comes back requesting login info again and again and again.......
I have the same issue from Pocket File Explorer when I open a path to the //server/share!!!!!
I have a Dell X30 running WM 2003 SE and I can access all of my shares with no problems on the same network!!!!!
What am I doing wrong?
Click to expand...
Click to collapse
I upgraded my PPC-6700 to WM6 and could not access my shares. When I reflashed to WM5 I was able to access some of the shared folders i.e. small folders.
On folders with many files I got "out of resources" messages which seems to be a different issue.
Flashing back to WM6 and I get the same User ID/password/domain and I use my Username/password and get cannot connect error. I am on a workgroup and don't run a domain. I've checked my folder permissions and they are set correctly. I have searched all over and it seems many people have the same issue with WM6 but I have seen no solution. However since I have got my USB connection working with "Enhanced Network Functionality" I haven't been too concerned about connecting through the network shares.
Try doing it without saving the password. Works for me on WM6 connecting to a vista PC. It is REALLY slow. Once mapped, it works fine.
Bushrod said:
Try doing it without saving the password. Works for me on WM6 connecting to a vista PC. It is REALLY slow. Once mapped, it works fine.
Click to expand...
Click to collapse
You da man!
Confirmed working with WM6 and Windows XP SP2.
Thanks so much.

[UPDATED 2009-11-24] Company proxy problem - there is a solution (start checking #2)

Hi all,
As far as I know anybody that needs to connect to the internet through a company proxy (3G or wifi), using Win Mobile 6.1 or 6.5, is facing "big problems".
From what I found doing some searches here in xda and in the internet this seems to be due:
- to a "bug" in the proxy configuration sw that keeps to "0" (instead of "1") the "Type" field of the HTTP-{xxxxxxx} key in HKEY_LOCAL_MACHINE\Comm\ConnMgr\Providers\{EF097F4C-DC4B-4c98-8FF6-AEF805DC0E8E}. In other words is like keeping NullProxy configuration insead of HTTP... But this seems to be an "old bug", now the correct configuration is properly saved (I checked in the 6.5 rom I am using and I can confirm).
- But even if the correct configuration is there the proxy password it is ignored, at least for HTTP (source: http://msdn.microsoft.com/en-us/library/aa455855.aspx )
For that reason, in my experience, the only programs that can access the net are Internet Explorer and Opera, that allow the user to insert account and pw of the proxy and go ahead... And this should confirm that only the configured proxy address is properly used, not the stored account and password...
But now the "surprise":
I can confirm that the following 4 roms ALLOWED ME TO SURF THE NET TRHOUGH A PROXY WITHOUT ANY PROBLEM !!!
I mean update the weather, use GoogleMaps, use MusicID, check sw updates, update GPS data... and so on !!!
The named roms (for the HD) are:
WM 6.5: (NEW !!!)
[ROM][WWE] XannyTechROM GRID LEO M2.5 ROMS (all versions)
(Note: only with the proxy password saved also in Internet Explorer...)
WM 6.1:
[ROM][WWE][24.07.09][21051.1.6.4]-=® panosha ® =-Black Pearl v 3.4 ("open" ROM, as the author says in his first post)
[ROM][ITA][14/04/2009] LP HD EVO II (5.2.21041 build 21042) Latest Manila
And now the question, as the solution must exist:
Where should we look to find the proper configuration in order to finally use it in all other roms ??
I started checking from the registry, but with no success..
I really hope to see some interest in this, as I understand it is not a "really common" problem...
Regards,
K
THE SOLUTION ... or at least the "very beginning" of it !!
I start suspecting that when the proxy password is saved also in Internet Explorer the chances to be able to use a company proxy with password are increasing... but I still do not understand...
What follows is what I noticed:
- In the WM 6.5 XannyTech ROMs I am using before saving the IE proxy password ONLY the quick GPS update was working (weather update, google maps, ecc. were not able to connect...). This actually means that both account and password of the configured proxy where properly used... but only from the quick GPS progam...
- When I saved the IE proxy password ALL programs that are using the network properly worked... that means that all programs properly red the proxy address stored in the "network section" and the proxy password from IE...
Can somebody try with other ROMs ??
Regards,
K
PS: And why with other ROMs this does not seem to allways happen ??
me 2, the same issue.
I have been trying but still unsuccessfull.
I hope someone can find the solution for this.
Found new rom working
I found another HD rom working properly:
[ROM][WWE] XannyTechROM GRID LEO 1.7b M2.5
So, as I said, a solution exists... but where ??
Regards, K
(PS: First post updated)
Updated post #2
K
PS: Actually I wrote this post mainly to keep the thread "in the first page"... sorry about that !
I'm using Kisja's WM6.1 ROM (thread) and cannot get proxy to work at my university. I can access local sites, which probably means that there is something wrong with the proxy settings.
But here comes the weird thing: I can check mail through the standard WM e-mail client, and this works great, but I cannot update Manila weather nor surf the web! I've tried both Opera and IE without success.
longice said:
I'm using Kisja's WM6.1 ROM (thread) and cannot get proxy to work at my university. I can access local sites, which probably means that there is something wrong with the proxy settings.
But here comes the weird thing: I can check mail through the standard WM e-mail client, and this works great, but I cannot update Manila weather nor surf the web! I've tried both Opera and IE without success.
Click to expand...
Click to collapse
Just to be sure that I understood: are you using account and password to connect to the proxy, or only the address ?
In may case, I use account and password.
And, just to share, some other little things:
- Not all programs are working through a proxy with account and password... for example Midomi works only through a proxyless connection
- This, toghether with what alreay noticed in the previous posts, confirms that there are programs able to use WM proxy configuration and others not...
We will see...
K
I think that it may be based on the WM build # and what has been removed.
I know I would try dasense's daG's latest kitchen (or equivalent for your phone) without excluding any windows sys packages or certs and running the latest com5 build. 23515.5.5.0
Everything that I've tried works through my company proxy currently.
kostas66 said:
a "bug" in the proxy configuration sw that keeps to "0" (instead of "1") the "Type" field of the HTTP-{xxxxxxx} key in HKEY_LOCAL_MACHINE\Comm\ConnMgr\Providers\
Click to expand...
Click to collapse
If found the responsible for this (at least from what I'm seeing : you have a company proxy set up on your USB ActiveSync connection and as soon as you do a sync the "Type" field goes from "1" to "0" thus disabling the proxy.
You'll find a key in "HKEY_LOCAL_MACHINE\Services\App\Tasks" that is something like "DisableProxy", delete this key, restart the phone and you'll be all right.
It seems to me that this is a HTC feature; on some rom it is enabled, not on others... go figure (and I don't know why such a feature exists)
Regards,
Stéphane.
thanks alot
Hello all, I found the solution.
You must:
set the proxy in the APN configuration
connect to the net via Internet Explorer
fill the username and password in Internet Explorer and SAVE it
that's all
This worked for me with the plain rom in the HTC HD2

Categories

Resources