cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
725
Views
0
Helpful
3
Replies

Quick aggressive mode question (pun intended)

WStoffel1
Level 1
Level 1

I have a client with multiple remote sites with each site having a L2L tunnel back to HQ.

They've made a decision to go with Broadband at a couple of the smaller sites, and they aren't getting static ip's

So the outside address on some of these remote firewalls will be dhcp.  The HQ end is a Cisco 5510.  Am I going to have to make those few dhcp sites aggressive mode?  Or is there still a way to do a main mode tunnel with the far end using dhcp?

Thanks.

1 Accepted Solution

Accepted Solutions

I do not believe it is a requirement to use agressive mode.  Are the remote sites ASAs also?

For ASA static to dynamic IP L2L vpn:

http://www.fir3net.com/Cisco-ASA/how-to-configure-a-cisco-asa-site-to-site-vpn-between-a-static-and-dynamic-ip-based-peers.html

for ASA static to Router dynamic IP L2L vpn:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080b3d511.shtml

Please rate all helpful posts.

--
Please remember to select a correct answer and rate helpful posts

View solution in original post

3 Replies 3

I do not believe it is a requirement to use agressive mode.  Are the remote sites ASAs also?

For ASA static to dynamic IP L2L vpn:

http://www.fir3net.com/Cisco-ASA/how-to-configure-a-cisco-asa-site-to-site-vpn-between-a-static-and-dynamic-ip-based-peers.html

for ASA static to Router dynamic IP L2L vpn:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080b3d511.shtml

Please rate all helpful posts.

--
Please remember to select a correct answer and rate helpful posts

WStoffel1
Level 1
Level 1

remote ends are sonicwalls.  i was only able to bring up the connection in aggressive mode which then got me thinking.  before I wasted too much time I wanted to ensure it wasn't a limitation on the asa side.  Thanks for the links!  very helpful.

Glad I could help

--
Please remember to select a correct answer and rate helpful posts