Dial backup VPN - preshare key issue

Answered Question
Dec 14th, 2007
User Badges:

I'm using dial backups to my DSL connections in case of failure but on my host router I also use EZVPN Server for Client VPN access. As a result the the EZVPN Server uses xauth for preshare authentication:


crypto isakmp key ??????? address 0.0.0.0 0.0.0.0


BUT for my dial backup VPN to work I need to use dynamic IP for the peer IP address thus requiring:


crypto isakmp key ?????? address 0.0.0.0 0.0.0.0 no xauth


I've tried configuring keys for the dial-in subnets, but it still seems to use the default.


Is this simply not supported or is there a workaround?


My host (main) router is a CISCO 1841, my remote router is 877.


Cheers,

Sean

Correct Answer by kaachary about 9 years 4 months ago

You need to configure ISAKMP profiles on the Ezvpn server router.


http://cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00801dddbb.shtml


That would do it.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.

Actions

This Discussion