cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
877
Views
10
Helpful
3
Replies

CSCvg02005 - FTD VPN IKEv2 asymmetric preshared keys should be supported

naveedquadri
Level 1
Level 1

I have a requirement to create an ikeV2 S2S with a client and client requires to use Asymentric PSK. However there is no option to configure Local/Remote PSK on the FTD. 

 

When i check the same on the CLI, it shows the config and suggests that both of them are same and the bug CSCvg02005 suggests the only workaround is to have both keys as "SAME". 

 

Is there any plan for cisco to improve upon this?

3 Replies 3

sysengkg
Level 1
Level 1

Not sure why this is classified as a "bug", it's just that this configuration is not available directly from the GUI. You can always use FlexConfig for that. This is of course what should be suggested as the workaround in the bug description.

under the tunnel-group ipsec-attribute you can config the asymetric key in flexconfig

kam aujla
Level 1
Level 1

is there a document explaining how to do the flexconfig configuration please