Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Can Pix initiate IKE aggresive mode?

Is this supported on pix? I know there's a feature (vpnclient) in 6.2.2 that can make the pix act as hardware vpn client. but that only works with cisco easy vpn server on the other side and expect to receive the proposal from the server.

Im looking for something like this on pix where you create your own proposal.

!The IKE configurations are as follows:

crypto isakmp policy 1

authentication pre-share

!

! The IPSec configurations are as follows:

crypto ipsec transform-set trans1 esp-3des esp-sha-hmac

access-list 101 permit ip 3.3.3.0 0.0.0.255 2.2.2.0 0.0.0.255

!

! Initiate aggressive mode using Radius tunnel attributes

crypto isakmp peer address 4.4.4.1

set aggressive-mode client-endpoint user-fqdn user@cisco.com

set aggressive-mode password cisco123

andy

1 REPLY
Bronze

Re: Can Pix initiate IKE aggresive mode?

Not possible.

86
Views
0
Helpful
1
Replies