cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
388
Views
0
Helpful
1
Replies

site to site VPN using aggressive mode

tparisi
Level 1
Level 1

Hi there,

We have an ASA5515 at HQ and multiple sites with ASA5505 units. All of these units are connected via site to site VPN in mm. They also have static ip's.mwe have two sites that we are currently attempting to connect back to HQ in aggressive mode but are unsuccessful.

Any assistance here would be greatly appreciated!

Thnkx

Sent from Cisco Technical Support iPad App

1 Reply 1

mwinnett
Level 3
Level 3

Depends at what point it is failing. Steps are isakmp (sh crypto isakmp sa), ipsec (sh crypto ipsec sa) and data xfer. For isakmp ensure profiles and passwords match, for ipsec check profiles and proxy ids (ie: encrypted subnets) to match and for data transfer nat, routing etc. Matthew