Cisco Support Community
Community Member

is eazy vpn client is only supported on 800 series routers for pix 7.0 ios

i am trying eazy vpn with pix 7.0.4 ios with a 3640 router. the 3640 router is as aeazy vpn client . and the pix as the eazy vpn server. the client get connected and keeps on asking the xauth parameter. i read in the release notes that that eay vpn requires 12.2 and above secure ios for 806 routers. does the pix also support eaxy vpn client routers fo 800 series only. help required urgent. if this true then pix sucks big time. they are forcing us to buy routers.they are becoming like microsoft. pls help



Re: is eazy vpn client is only supported on 800 series routers f


PIX can become eazy VPN server for IOS routers, PIX501/506 or VPN 3002 concentrator type of clients. It is not only limited to support 800 routers. It must b mentioned to inform users that if they r using 800 then they need this IOS.

I think u have mis-interpreted that info. kindly upload the config of PIX 7.0 .


aashish C

Community Member

Re: is eazy vpn client is only supported on 800 series routers f

hi ashish here's my config

my pix is connected acting as a easy vpn server with a webserver connected on the inside interface. the inside interface ip address is and the ip address of the web server is

the pix outside interface is connected to a 3640 router acting as a easy vpn client.

pix outside interface ip is and the interface ip of the router is

the 3640's other ethernet interface ip is connected a host on

i am using pix ios 7.1.2 and 3640 router is having 12.4(5) secure ios.

username cisco password cisco

crypto dynamic dynmap cisco 10 set transform-set cisco

crypto ipsec transform-set cisco esp-des esp-sha-hmac

crypto map cisco ipsec-isakmp dynamic dynmap

crypto map cisco interface outside

isakmp identity address

isakmp enable outside

isakmp policy 1 authentication pre-share

isakmp policy 1 encryption 3des

isakmp policy 1 hash md5

isakmp policy 1 group 2

isakmp policy 1 lifetime 86400

tunnel-group cisco type ipsec-ra

tunnel-group cisco general-attributes

authentication-server-group LOCAL

default-group policy cisco

tunnel-group cisco ipsec-attributes

pre-shared-key cisco

group-policy cisco internal

group-policy attributes

nem enable

password-storage enable

config on the 3640 router

crypto ipsec client ezvpn cisco

group cisco key cisco


mode network-extension mode

username cisco pass cisco

int e0/0

ip add

crypto ipsec client ezvpn cisco outside

no shutdown

int e0/1

ip add

no shutdown

crypto ipsec client ezvpn cisco inside

the router is all the time prompted for

crypto ipsec client ezvpn xauth

i put in the username and password

but it still keeps on asking the same. i have done my config from a cisco configuration example.

i tried the same with pix ios 6.3 it works fine. pls help me out if possible. i have spend a entire night over this. thank u for ur response. waiting for ur reply.


Community Member

Re: is eazy vpn client is only supported on 800 series routers f

if it works on 6.3, why upgrade?

CreatePlease to create content