Removing lines from PIX 515 config

Unanswered Question
Mar 22nd, 2003

I'm trying to cleanup the config on a PIX 515. I am trying to remove the following lines:

crypto map dyn-map 20 ipsec-isakmp dynamic cisco

isakmp identity hostname

isakmp policy 1 authentication rsa-sig

isakmp policy 1 encryption des

isakmp policy 1 hash sha

isakmp policy 1 group 1

isakmp policy 1 lifetime 86400

vpngroup unityclient idle-time 1800

I do a "no the line to remove" and a wr me.

When I check out the config file they are back. How do I get rid of the lines?

Also, would this be the reason that some users are not able to use VNC after they VPN into the network.

Thanks

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
mostiguy@netnum... Mon, 03/24/2003 - 06:29

Those lines are all part of a vpn configuration. Are you sure that they are not required by your configuration?

This most likely does not have anything to do with user's ability to use VNC through a VPN connection. Do they have trouble with any other protocols? Can they ping the machines they wish to VNC to through the vpn?

Matt

b-pelphrey Mon, 03/24/2003 - 08:06

those are all the "default" parameters in the IKE phase 1 from a pix perspective. just like many times in other cisco gear, i don't believe...i could be wrong, that you can get rid of these.

b-pelphrey Mon, 03/24/2003 - 08:20

actually, i just proved myself wrong. do a : no isakmp policy 1

and see if that works. that should take it away.

Paul.Lane Mon, 03/24/2003 - 09:39

Thanks

tvanginneken Mon, 03/24/2003 - 09:05

Hi,

no isakmp policy 1

should remove the lines.

Kind Regards,

Tom

Actions

Login or Register to take actions

This Discussion

Posted March 22, 2003 at 5:57 AM
Stats:
Replies:5 Overall Rating:
Views:228 Votes:0
Shares:0
Tags: No tags.
 

Discussions Leaderboard

Rank Username Points
1
tsteger1
916
2
acomiskey
894
3
Patrick Iseli
850
4
jmia@ohgroup.co.uk
808
5
jackko
787
Rank Username Points
Marvin Rhoads
14
Collin Clark
10
Karsten Iwen
10
Neno Spasov
10
dhananjoychowdhury
5