cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
311
Views
0
Helpful
2
Replies

Suggestions please!

itsupport
Level 1
Level 1

I have a Cisco 831 router trying to establish an ezvpn connection to a VPN 3002 concentrator by using a peer address of 216.x.x.92. This same address is also used for a different Lan-to-Lan tunnel. Is this why I get the error below on the 831 when it tries to startup?

%CRYPTO-6-IKMP_MODE_FAILURE: Processing of Aggressive mode

failed with peer at 216.x.x.92 A pre-shared key for address mask 216.x.x.x.255.255.255 already exists!

Thanks in advance for any help!

2 Replies 2

matthew.long
Level 1
Level 1

Yes you can only have one key per ip address.

So if there is already VPN information in the config for the IP you will get an error.

Another thing to note.

You said that you are doing EzVPN. If the 800 router is the EzVPN client, then it will not connect to the 3002. This is because the 3002 cannot be a VPN server.