Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Security with Hub and Spoke VPN's - with Dynamic remotes

I am attempting to locate information regarding a VPN security feature and have been unsuccessful. Another vendor (Sonicwall) claims they already have this feature so I am hopeful of a Cisco equivalent.

HQ(static IP) --(Dynamic) Remotes x70

Cisco 3800 -------------Cisco 800

Presently we have the above hub and spoke working fine using a wild card pre-shared key at the Head Office. We are looking for a method to retain this but adding on another layer of security by some how identifying the incoming remote VPN connection.

The goal is to have some way to uniquely identify the remote VPN firewall. This would enable us to individually secure each connection in addition to a single common key.

Sonicwall feature uses optional Identifiers Field to set ID's that both units seem to share above and beyond the general IPSec parameters.

Any help or suggestions would be appreciated, thanks.