Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

VPN hub and spoke with Certificates

I have a PIX 515 with VPNs to multiple PIX 506s in a hub and spoke format as well as some VPN clients. I am using Certificates for the PIX-PIX VPNs and Certs with XAUTH for the clients. All seems to work fine. I have noticed that when I add a remote PIX I must only edit my "nonat" access list on the HUB PIX to allow the new PIX to communicate through the VPN. I would have thought I would need to add more to the config (peer statements, crypto map instance, etc...) Can anyone clarify what I actually should have to add to the HUB PIX config in this situation?

1 REPLY
New Member

Re: VPN hub and spoke with Certificates

Get all your config’s together and have Cisco’ tac engineers look them over. I think you should be setting up a new tunnel to each spoke site.

116
Views
0
Helpful
1
Replies
CreatePlease to create content