Hello Gurus, We have a unique problem . We are having a checkpoint ng-ai running on ip 350 .We are using secremote clients for our vpn connectivity. The secremote client version is NG Feature pack 3 (build Number:53328 ) .Using the same client we are able to connect from one of your branch office win2k machine running on SP4. However using the same client we are not able to connect to the gateway from a different office having a win2k machine with SP2. We have not defined any policy stating that a macines with only SP4 can be connected and the rest cannot be. In the smartview tracker we can see that when client tries to he is assigned a ip from the pool of ip defined for vpn client from the gateway , however after the ip doesn't reach at the clients end.In the diagonistic tool its says phase 2 cannot be completed. Any clues how to go about to solve the problem ?? thanks in advance