Crypto Map and Static VTI IPsec VPNs on the same router

Unanswered Question
Apr 16th, 2010

I have been trying to get both crypto maps and IPsec static VTIs configured for VPNs on the same router and terminated on the same interface. I do like the benefits of static VTI's, but I need to be able to deal with situations where crypto maps are needed.

I have read about IKE version 2, which is described here:

http://www.cisco.com/en/US/docs/ios/sec_secure_connectivity/configuration/guide/sec_cfg_ikev2.html

Are there any IOS releases today that have the ability to configure crypto maps and IPsec static VTIs on the same router and terminated on the same interface? I am interested in support for this feature because:

  • I can configure static VTIs to terminate VPNs to IOS-based devices that have the capability (examples: UC520, 851, 871)
  • I can terminate VPNs to devices that do not have static VTI support, such as the SA520 or ASA 5505

I have attempted to configure this feature on a 3825 ISR, but I was not able to get this capability working on the 3825 ISR yet.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Average Rating: 0 (0 ratings)

Actions

Login or Register to take actions

This Discussion

Posted April 16, 2010 at 10:36 AM
Stats:

Related Content

Discussions Leaderboard