- Cisco 1841 = hub router
- 5x 877s = spoke routers with dynamically assigned fixed IPs
- The 1841 also hosts EZVPN clients
The configuration above works perfectly; my issue occurs when I configure dial based (dynamic IP) backup VPN connections from my spoke routers.
My crypto key is the issue, i.e. I need x-auth for my EZVPN clients and no x-auth for my dial backup clients.
I have tried profiles with keyrings for the EZVPN and dial backup client only with no success and recently read on the Forum that static and dynamic VPN connections are not recommended to co-exist.
So this brings me to my questions:
1. Can Fixed, Dynamic and EZVPN connection co-exist on an 1841 router?
2. If using profiles/keyrings, should this be applied to all VPN connections and not just the dynamic connections like I tried?
3. Any other suggestions