IPSEC and EZVPN on same initiator

Unanswered Question
Jul 10th, 2010

Hello pro’s

Would like to know the possibilities of an IOS router  doing 2 types of vpn's,

1. IPSEC Site to Site tunnel to DATACENTER A  ( Hub n Spoke)

2. EZVPN tunnel to DATACEBTER B ( NEM )

In both the scenarios router is the initiator. Basically we have tried configuring said parameter and had no luck bringing the IPSEC Up and running. any references  would be of great help. Thanks in advance.

Murali Konasani

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Jennifer Halim Sun, 07/11/2010 - 00:14

IOS router is capable of running both site-to-site vpn as well as easy vpn server on the same box. However, from your requirement, for point 2) you would like the router to be easy vpn client, which can not be configured together with site-to-site vpn tunnel (point 1)).

You can only configure the following on IOS router:

1) IOS router can be configured as site-to-site vpn tunnel, and easy vpn server

OR/

2) Easy vpn client (as an easy vpn client, the router can not be configured as site-to-site vpn peer).

Here is the sample configuration for site-to-site vpn tunnel:

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080194650.shtml

Here is sample configuration for easy vpn, where one end is the easy vpn server, and the other end is the easy vpn client:

http://www.cisco.com/en/US/products/sw/secursw/ps2308/products_configuration_example09186a008032b637.shtml

Hope that helps.

Actions

This Discussion

Related Content