04-03-2008 04:58 PM - edited 02-21-2020 03:39 PM
I'm trying to setup ios to connect to a third-party vpn gateway, that gateway need xauth authentication by sending a mode-cfg packet after phase1 finished, how can I make IOS respond that packet with a local username/password?
Currently ISAKMP debug shows "Unknown Input IKE_MESG_FROM_PEER,IKE_CFG_REQUEST" error when it received that mode-cfg packet.
Thanks.
04-09-2008 12:49 PM
If you want router to use X-Auth you will have to change the mode to aggressive. Change this and check if this works.
04-26-2008 10:02 PM
you mean changing mode in IOS? I remember IOS will always try to use main mode and only try to use aggressive mode when main mode failed. Is there a command to force IOS to use only aggressive mode? what is it?
Thanks.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide