cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
226
Views
0
Helpful
2
Replies

inconsistent IPSEC VPN LAN-to-LAN configuration options

SDWorx_2
Level 1
Level 1

IF you configure a LAN-to-LAN connection somewher in the middel you have the option to set the IKE proposal.

The drop down box doens't display all the IKE proposals active in the SYSTEM-TUNNELING PROTOCOLS-IPSEC-IKE PROPOSALS.

When you read the help file, you should be able to select all the active IKE proposals.

I thus can only configure a specific IKE propsal for a LAN-to-LAN connection in the SYSTEM-POLICY MANAGEMENT-TRAFFIC MANAGEMENT-SAs.

Is this a bug or ???

2 Replies 2

thomas.chen
Level 6
Level 6

Some times your tunnel may not come up if your IKE proposal is in the "Inactive Proposals" list. To configure the active IKE Proposal select Configuration > System > Tunneling Protocols > IPSec > IKE Proposals . If your IKE proposal is in the "Inactive Proposals" list you can enable it by selecting the IKE proposal. For a better idea check out the following document,

http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_example09186a00801f0f0c.shtml

I meant that not ALL the active IKE proposals are shown in the interface !

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: