cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
531
Views
0
Helpful
2
Replies

IPSEC TUNNEL DOES NOT STABLISH BETWEEN VPN CONCENTRATOR AND ROUTER

I have configured many ipsec/vpn tunnel using the same vpn concentrator and many remote routers and I have not had any problems but there is a remote connection that does stablish a ipsec/vpn connection.

I am attaching the router configuration and show debug thar appear during the fail connection.

Can some body tell me what is the fail?

The ios of router that is working wel is: c2801-adventerprisek9-mz.124-19b.bin

The ios of router that is not working is: c2801-adventerprisek9-mz.123-14.T7.bin

Is the problem located at ios version?

Waitng your sooner answer.

Attn.

Roger Majo

2 Replies 2

ebarticel
Level 4
Level 4

My suggestion is changing the acl to a numbered acl and check if IKE is enabled with "crypto isakmp enable".

crypto policy config is missing "authentication pre-share" command.

Hope this helps

Eugen

Hi Eugen,

I have enable crypto isakmp enable and change extended acl to numbered acl.

Authentication pre-shared is configured at crypto policyu config.

The interface fast 0/1 is up and we are making ping to a remote site but the problem persist.

See attached files and snapshoot.

Waiting your sooner answer.

Question: is it convenient that a user connect a pc to the switch connected to the router and make ping instead making ping from thye router?

Attn.

Roger Majo

Review Cisco Networking products for a $25 gift card