cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
292
Views
0
Helpful
2
Replies

XAUTH using with encrypted nonces

d.thelen
Level 1
Level 1

I'm using RSA signatures for IKE authentification between two routers (encrypted nonces). Now I have configured one router to access it by using the Cisco VPN-Client 3.x, authentification by XAUTH using the local router user-database. But that does not work. When I configure it, the normal VPN connection between the routers does no longer work after a reload of the router. I know that I have to configure the parameter "no-xauth" when I use pre-shared keys to get it working, for example: "crypto isakmp key keystring address 1.1.1.1 no-xauth". Do I need to configure such an parameter also when I use signatures?

Thank you in advance.

Dirk

2 Replies 2

hadbou
Level 5
Level 5

You are configuring that command as work around as it is a bug CSCdx48695. I don't think you need to configure it for signatures also.

Yes, but without it does not work!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: