Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ASA Crypto Map Question

I have roughly 80 sites I need to configure for VPN. Do I have to specify a separate tunnel-group and crypto map sequence number for each? i.e.

site A:

crypto map CisoMap 111 match address 55

crypto map CisoMap 111 set peer 1.1.1.1

crypto map CisoMap 111 set transform-set CiscoXform

tunnel-group 1.1.1.1 type ipsed-l2l

tunnel-group 1.1.1.1 ipsec-attributes

pre-shared-key *

site B:

crypto map CisoMap 222 match address 55

crypto map CisoMap 222 set peer 2.2.2.2

crypto map CisoMap 222 set transform-set CiscoXform

tunnel-group 2.2.2.2 type ipsed-l2l

tunnel-group 2.2.2.2 ipsec-attributes

pre-shared-key *

2 REPLIES

Re: ASA Crypto Map Question

Your statement is correct, you need to define a separate crypto map (diff seq no and same name) for each vpn and a separate tunnel-group for each

New Member

Re: ASA Crypto Map Question

Imartino,

Hey thanks for the quick reply!!!!! I was editing my post when you responded.

Thanks again, Imartino.

274
Views
5
Helpful
2
Replies
CreatePlease login to create content