<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic When creating multiple VPN tunnels in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666233#M195901</link>
    <description>&lt;P&gt;&amp;nbsp;I found something that was rather curious when creating a VPN tunnel between one ASA and 2 opposing location ASA's. What I am doing is creating 2 tunnels on a singe ASA for a three location loop.&lt;/P&gt;&lt;P&gt;Eg: ASA-a is linked via VPN Tunnel to ASA-b and ASA-c.&lt;/P&gt;&lt;P&gt;My question is this: When creating the isakmp policy, do you have to repeat the same steps over again if you already entered it in for the first tunnel?&lt;/P&gt;&lt;P&gt;&amp;nbsp;Specifically this part: crypto isakmp policy 30 authentication pre-share&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 encrypt 3des&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 hash sha&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 group 2&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 lifetime 86400&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My reason for asking is when I went to enter in this block of&amp;nbsp;code for the second tunnel, I changed the ID number from 20 to 30 as shown above. When I saved the code to memory once I had it in, the error popped up that the isakmp policy was superseded by policy 20.&lt;/P&gt;&lt;P&gt;Everything looks to be in order and there when I do a show, just wondering if I am adding in keyboard work that does not need to be there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-Jon&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 05:39:57 GMT</pubDate>
    <dc:creator>Jon Moots</dc:creator>
    <dc:date>2019-03-12T05:39:57Z</dc:date>
    <item>
      <title>When creating multiple VPN tunnels</title>
      <link>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666233#M195901</link>
      <description>&lt;P&gt;&amp;nbsp;I found something that was rather curious when creating a VPN tunnel between one ASA and 2 opposing location ASA's. What I am doing is creating 2 tunnels on a singe ASA for a three location loop.&lt;/P&gt;&lt;P&gt;Eg: ASA-a is linked via VPN Tunnel to ASA-b and ASA-c.&lt;/P&gt;&lt;P&gt;My question is this: When creating the isakmp policy, do you have to repeat the same steps over again if you already entered it in for the first tunnel?&lt;/P&gt;&lt;P&gt;&amp;nbsp;Specifically this part: crypto isakmp policy 30 authentication pre-share&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 encrypt 3des&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 hash sha&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 group 2&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; crypto isakmp policy 30 lifetime 86400&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My reason for asking is when I went to enter in this block of&amp;nbsp;code for the second tunnel, I changed the ID number from 20 to 30 as shown above. When I saved the code to memory once I had it in, the error popped up that the isakmp policy was superseded by policy 20.&lt;/P&gt;&lt;P&gt;Everything looks to be in order and there when I do a show, just wondering if I am adding in keyboard work that does not need to be there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-Jon&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:39:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666233#M195901</guid>
      <dc:creator>Jon Moots</dc:creator>
      <dc:date>2019-03-12T05:39:57Z</dc:date>
    </item>
    <item>
      <title>JonThat policy is not tied to</title>
      <link>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666234#M195902</link>
      <description>&lt;P&gt;Jon&lt;/P&gt;&lt;P&gt;That policy is not tied to any tunnel unlike the phase 2 configuration.&lt;/P&gt;&lt;P&gt;So if you want to use the same settings you only need to enter it once.&lt;/P&gt;&lt;P&gt;The reason for the numbering is so you can have multiple policies and the firewall will run through them in order ie. you may have a peer using a different policy than other peers.&lt;/P&gt;&lt;P&gt;But for the same policy you only need to enter it once.&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2015 15:48:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666234#M195902</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2015-03-19T15:48:10Z</dc:date>
    </item>
    <item>
      <title>Thank you Jon. The tutorial</title>
      <link>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666235#M195903</link>
      <description>&lt;P&gt;Thank you Jon. The tutorial that I was reading for the VPN Tunnel did not distinguish this. I figured that to be the case but wanted to be sure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2015 16:44:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/when-creating-multiple-vpn-tunnels/m-p/2666235#M195903</guid>
      <dc:creator>Jon Moots</dc:creator>
      <dc:date>2015-03-19T16:44:40Z</dc:date>
    </item>
  </channel>
</rss>

