Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Quick aggressive mode question (pun intended)

I have a client with multiple remote sites with each site having a L2L tunnel back to HQ.

They've made a decision to go with Broadband at a couple of the smaller sites, and they aren't getting static ip's

So the outside address on some of these remote firewalls will be dhcp.  The HQ end is a Cisco 5510.  Am I going to have to make those few dhcp sites aggressive mode?  Or is there still a way to do a main mode tunnel with the far end using dhcp?

Thanks.

1 ACCEPTED SOLUTION

Accepted Solutions
VIP Green

Quick aggressive mode question (pun intended)

I do not believe it is a requirement to use agressive mode.  Are the remote sites ASAs also?

For ASA static to dynamic IP L2L vpn:

http://www.fir3net.com/Cisco-ASA/how-to-configure-a-cisco-asa-site-to-site-vpn-between-a-static-and-dynamic-ip-based-peers.html

for ASA static to Router dynamic IP L2L vpn:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080b3d511.shtml

Please rate all helpful posts.

--

Please remember to rate and select a correct answer
3 REPLIES
VIP Green

Quick aggressive mode question (pun intended)

I do not believe it is a requirement to use agressive mode.  Are the remote sites ASAs also?

For ASA static to dynamic IP L2L vpn:

http://www.fir3net.com/Cisco-ASA/how-to-configure-a-cisco-asa-site-to-site-vpn-between-a-static-and-dynamic-ip-based-peers.html

for ASA static to Router dynamic IP L2L vpn:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080b3d511.shtml

Please rate all helpful posts.

--

Please remember to rate and select a correct answer
New Member

Quick aggressive mode question (pun intended)

remote ends are sonicwalls.  i was only able to bring up the connection in aggressive mode which then got me thinking.  before I wasted too much time I wanted to ensure it wasn't a limitation on the asa side.  Thanks for the links!  very helpful.

VIP Green

Quick aggressive mode question (pun intended)

Glad I could help

--

Please remember to rate and select a correct answer
406
Views
0
Helpful
3
Replies
CreatePlease to create content