cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
274
Views
0
Helpful
1
Replies

Site2site vpn on version 7x

Lharrypersaud
Level 1
Level 1

I need to setup a site to site vpn on two pix 515 that will be running version 7x software. The problem is these two pix came with the default hardware e.g. one outside and one inside interface and both need to connect to two routers, isp and private. I heard that it can be done using a sub interface and configuring ospf. Is this possible and is there any documentation or template on how to do this?

Any help will be greatly appreciated.

1 Reply 1

smalkeric
Level 6
Level 6

Successful establishment of the VPN tunnel requires that the tunnel end points agree on common parameters for each phase. The parameters include encryption type (Advanced Encryption Standard [AES], Triple Data Encryption Standard [3DES] and DES), authentication mechanisms (pre-shared keys as opposed to certificates) and lifetimes. If these parameters do not match at both ends, the tunnel will not be established and you receive the atts are not acceptable error message.

For configuration examples, refer to this documents

http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_example09186a00800949d2.shtml