cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
349
Views
0
Helpful
2
Replies

VPN site to site adminsitration

bryantsteve
Level 1
Level 1

Should/how often  do I need to change the PSKs for VPN tunnels.  Why aren't the PSKs encrypted in the configuration   or is this an option?

Thanks

2 Replies 2

andrew.prince
Level 10
Level 10

You don't really need to change the PSK's often, dynamic IPSEC keys are used for Phase 2 of the VPN and they are renegotiated every 8 hours default.

Sounds like your config is on a router?

Thanks Andrew, yes this is a site to site VPN between two 2811 routers. Obvoiusly I lack a clear understanding of how the encryption process works in this case, so I don't really understand if I need to afford the PSK the same protection as a secret key

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: