Dial backup VPN - preshare key issue

Answered Question
Dec 14th, 2007

I'm using dial backups to my DSL connections in case of failure but on my host router I also use EZVPN Server for Client VPN access. As a result the the EZVPN Server uses xauth for preshare authentication:

crypto isakmp key ??????? address 0.0.0.0 0.0.0.0

BUT for my dial backup VPN to work I need to use dynamic IP for the peer IP address thus requiring:

crypto isakmp key ?????? address 0.0.0.0 0.0.0.0 no xauth

I've tried configuring keys for the dial-in subnets, but it still seems to use the default.

Is this simply not supported or is there a workaround?

My host (main) router is a CISCO 1841, my remote router is 877.

Cheers,

Sean

I have this problem too.
0 votes
Correct Answer by kaachary about 8 years 11 months ago

You need to configure ISAKMP profiles on the Ezvpn server router.

http://cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00801dddbb.shtml

That would do it.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.

Actions

This Discussion