Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Cisco Secure client to 3620 IPSec

I configured IPSec and ISAKMP on the 3620 using a dynamic map. I configure the pre-shared key with the following command:

"crypto isakmp key ciscocisco address"

but it would not work until I specified a specific IP address:

"crypto isakmp key ciscocisco address"

I am running IOS version 12.0 on the 3620 and Cisco Secure Client 1.1. Is this an IOS bug or did I configure something incorrectly.

Bruce Williams

New Member

Re: Cisco Secure client to 3620 IPSec

I think that you've missed out the wildcard mask of which tells the router that you are using dynamic addressing for the clients. Try adding an extra to the end of your crypto isakmp key command...

Here's a section from my own...

crypto isakmp policy 1

hash md5

authentication pre-share

crypto isakmp key ****** address

crypto isakmp client configuration address-pool local vpnpool



crypto ipsec transform-set trans1 esp-des esp-md5-hmac


crypto dynamic-map dynmap 10

set transform-set trans1



crypto map intmap client configuration address initiate

crypto map intmap client configuration address respond

crypto map intmap 10 ipsec-isakmp dynamic dynmap

- Colin -