cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1334
Views
0
Helpful
0
Replies

disable aggressive mode

Isaac
Level 1
Level 1

PCI scan came back that aggressive mode needs to be disabled on ASA. I am looking through forums and researching, I am seeing conflicting information on this. The command to disable aggressive mode is crypto ikev1 am-disable. But this is where it is conflicting, I can see that when the tunnel goes to re-negotiate it will establish using main mode but from reading other articles it states there that the tunnel will form only with certificates and not pres-shared keys. Can I give a solid answer to this please.

0 Replies 0
Review Cisco Networking for a $25 gift card