I'm using dial backups to my DSL connections in case of failure but on my host router I also use EZVPN Server for Client VPN access. As a result the the EZVPN Server uses xauth for preshare authentication:
crypto isakmp key ??????? address 0.0.0.0 0.0.0.0
BUT for my dial backup VPN to work I need to use dynamic IP for the peer IP address thus requiring:
crypto isakmp key ?????? address 0.0.0.0 0.0.0.0 no xauth
I've tried configuring keys for the dial-in subnets, but it still seems to use the default.
Is this simply not supported or is there a workaround?
My host (main) router is a CISCO 1841, my remote router is 877.
You need to configure ISAKMP profiles on the Ezvpn server router.
That would do it.