cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3480
Views
36
Helpful
1
Replies

Enabling IKEv1 & IKEv2

Hello all,

I was wondering if it's possible to enable both versions of IKE (v1 & v2) on the outside interface of the ASA so that I can terminate L2L tunnels according to the specified policies?  If so, will enabling the one while the other is already turned on cause current VPN tunnels to drop and reconnect?  Currently, we have IKEv1 enabled on the outside interface and I want to turn on IKEv2 but don't want to interrupt the current L2L tunnels.  Thanks!

Terence

1 Reply 1

rkumar5
Level 1
Level 1

Hi Terence,

IKEV1 and IKEV2 both can be enabled on the same interface at the same time

crypto ikev2 enable outside 
crypto ikev1 enable outside

This will not interrupt the other L2L tunnels

Thanks

Raj

Review Cisco Networking for a $25 gift card