<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: dynamic-to-static VPN problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082454#M893509</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For verifying the configuration for defaultl2lgroup here is the example it may help you&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup general-attributes&lt;/P&gt;&lt;P&gt; no accounting-server-group&lt;/P&gt;&lt;P&gt; default-group-policy DfltGrpPolicy&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; no pre-shared-key&lt;/P&gt;&lt;P&gt; peer-id-validate req&lt;/P&gt;&lt;P&gt; no chain&lt;/P&gt;&lt;P&gt; no trust-point&lt;/P&gt;&lt;P&gt; isakmp keepalive threshold 10 retry 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 21 Nov 2008 15:19:46 GMT</pubDate>
    <dc:creator>tstanik</dc:creator>
    <dc:date>2008-11-21T15:19:46Z</dc:date>
    <item>
      <title>dynamic-to-static VPN problem</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082453#M893508</link>
      <description>&lt;P&gt;Hi Guys, How are you?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to configure ASA 5505 as central point with static IP. I already saw "PIX/ASA 7.x PIX-to-PIX Dynamic-to-Static IPsec with NAT and VPN Client Configuration Example" guide.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But the problem is when I use "isakmp key password address 0.0.0.0 netmask 0.0.0.0" command I got a error menssage saying that DefaultRAGroup is already using pre-shared-key. I already tried to configure DefaultL2LGroup and I get the same error.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I tried to configure DefaultRAGroup with "no pre-shared" but after few seconds it lost effect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should I remove DefaultRAGroup ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:13:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082453#M893508</guid>
      <dc:creator>puggedo</dc:creator>
      <dc:date>2019-03-11T14:13:55Z</dc:date>
    </item>
    <item>
      <title>Re: dynamic-to-static VPN problem</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082454#M893509</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For verifying the configuration for defaultl2lgroup here is the example it may help you&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup general-attributes&lt;/P&gt;&lt;P&gt; no accounting-server-group&lt;/P&gt;&lt;P&gt; default-group-policy DfltGrpPolicy&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; no pre-shared-key&lt;/P&gt;&lt;P&gt; peer-id-validate req&lt;/P&gt;&lt;P&gt; no chain&lt;/P&gt;&lt;P&gt; no trust-point&lt;/P&gt;&lt;P&gt; isakmp keepalive threshold 10 retry 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Nov 2008 15:19:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082454#M893509</guid>
      <dc:creator>tstanik</dc:creator>
      <dc:date>2008-11-21T15:19:46Z</dc:date>
    </item>
    <item>
      <title>Re: dynamic-to-static VPN problem</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082455#M893510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi thx for reply!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I found something interesting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On bugtool kit i found the bug CSCsk39154:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"PIX/ASA dynamic lan to lan vpn tunnels fail negotiation with version 8.0.2.16"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ok version 8.0.2.16 but there is more:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1st Found-In&lt;/P&gt;&lt;P&gt;7.0&lt;/P&gt;&lt;P&gt;8.0(2.16) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fixed-In&lt;/P&gt;&lt;P&gt;8.0(2.19)&lt;/P&gt;&lt;P&gt;8.1(0.74)&lt;/P&gt;&lt;P&gt;7.2(4)&lt;/P&gt;&lt;P&gt;8.2(0.67)&lt;/P&gt;&lt;P&gt;7.2(3.5)&lt;/P&gt;&lt;P&gt;7.0(7.6)&lt;/P&gt;&lt;P&gt;7.1(2.65) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My ASA version is 7.2(3) and it got fixed-in 7.2(3.5). It sounds like my version is bugged, but im gonna try your suggestion! THX.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Nov 2008 16:23:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082455#M893510</guid>
      <dc:creator>puggedo</dc:creator>
      <dc:date>2008-11-21T16:23:15Z</dc:date>
    </item>
    <item>
      <title>Re: dynamic-to-static VPN problem</title>
      <link>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082456#M893511</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is a pix 6.x command.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Nov 2008 16:30:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dynamic-to-static-vpn-problem/m-p/1082456#M893511</guid>
      <dc:creator>acomiskey</dc:creator>
      <dc:date>2008-11-21T16:30:42Z</dc:date>
    </item>
  </channel>
</rss>

