cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
721
Views
0
Helpful
1
Replies

IPSEC between Netscreen SSG-140 and Cisco 3640 Router

markd
Level 1
Level 1

The symptoms are that the NS will try to build the IKE session and time out. Even with the Cisco debugging enabled I get no IKE nor IPSEC SA trying to build on the 3640. What am I doing wrong or what can I try?

Enclosed is the configuration and a brief description of my environment.

172.30.0.0/16 -> 172.30.20.254 | Netscreen SSG-140 | 192.168.1.254 -> private net -> 192.168.3.5 | 3640 | 172.20.0.220 -> 172.20.0.0/16

The configurations are enclosed

1 Reply 1

mj11
Level 3
Level 3

Hi

I think you need to apply the crypto map to the interface FastEthernet0/0.

crypto map nsmap

Please rate if this helps.

Regards MJ

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: