I'm test just now, in a lab enviromment, a simple solution to join 2 networks at diferent location. There are in this lab 2 cisco 1841 with C1841-ADVSECURITYK9-M both. I'm not so good when subject is VPN, I configure the both routers and does not work. Now I don't know how to start a debug to help me.
I did the command "sh crypto session detail" and the session is down.
Someone can help me on this issue.
See the att below.
Didn't recognize any issues with your configuration.
Have you generated any traffic to bring the tunnel up?
Your crypto ACLs:
access-list 150 permit ip 192.168.0.0 0.0.0.255 192.168.1.0 0.0.0.255
access-list 150 permit ip 192.168.1.0 0.0.0.255 192.168.0.0 0.0.0.255
... define the traffic that is to be forwarded to the crypto engine.
If you don't generate traffic requiring protection, the two tunnel endpoints won't commence negotiation of an ISAKMP SA (used as a secure channel to negotiate IPSec SAs).
Ping a host on the far side network, and see if tunnel negotiation commences.
Noticed an unimplemented NAT ACL. If you later decide to implement NAT, be sure to exempt the traffic requiring crypto protection, from the NAT process.