cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
231
Views
0
Helpful
3
Replies

EZVPN and Site to Site VPN running on same pix

glenthms
Level 1
Level 1

Is it necessary to always enable "no-xauth no-config-mode" after the isakmp key statement for s2s VPN if you are also running EZVPN with Extended Authentication?

3 Replies 3

aashish.c
Level 4
Level 4

Hi

No, it is not necessary, s2s vpn works fine with isakmp key and address info only.

regards

aashish C

Thanks for answering. Turns out the remote end device was a non Cisco VPN endpoint for the s2s vpn. I created another site to site vpn to another location of ours which was another pix and I didnt have this problem. So it seems it may be necessary for non Cisco devices to enable this feature.

not too sure about lan-lan and ezvpn on the same pix. i do actually have the keyword.

nonetheless, i'm pretty sure the keyword is required for lan-lan and remote vpn on the same pix.