Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

Doing EzVpn without EzVpn IOS commands

Unanswered Question


I am trying to set a vpn from a 805 (12.3 with ipsec 3des) router with dynamic ip to a 515 PIX Fw (6.2) with static ip.

Seems that there is a easy way to do this if you use Easy VPN like the example in this link http://www.cisco.com/warp/public/cc/so/neso/vpn/ns171/ns27/prodlit/cltzp_cg.pdf.

My problem is that 805 does not support easy vpn (the crypto ipsec client command).

As long as I had read ez vpn allows to avoid complex configuration with some easy commands, but I suppose that if you have not this feature you are still able to configure a vpn.

So I would like to know how to do this with plane IOS ipsec commands.

I had been looking for a sample configuration but the more closest example is in this link


but it is with a Router (called Hub) instead a PIX and seems more like a site to site vpn.

Any help will be appreciated.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4.5 (2 ratings)
jsivulka Mon, 01/26/2004 - 12:55
User Badges:
  • Bronze, 100 points or more

The configuration example for setting up an IPSec VPN between a PIX when one end is dynamically addressed is available at http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080094a87.shtml. Another document that would be helpful is 'Configuring IPSec - Router to PIX' and is located at http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094498.shtml.

If you are looking at a lot of work with IPSec, then the IPSec support page is a great resource. Both the documents above were picked up from the support page. It is accessible at http://www.cisco.com/pcgi-bin/Support/browse/psp_view.pl?p=Technologies:IPSec&viewall=true


This Discussion