cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
354
Views
0
Helpful
2
Replies

XAUTH using with encrypted nonces

d.thelen
Level 1
Level 1

I'm using RSA signatures for IKE authentification between two routers (encrypted nonces). Now I have configured one router to access it by using the Cisco VPN-Client 3.x, authentification by XAUTH using the local router user-database. But that does not work. When I configure it, the normal VPN connection between the routers does no longer work after a reload of the router. I know that I have to configure the parameter "no-xauth" when I use pre-shared keys to get it working, for example: "crypto isakmp key keystring address 1.1.1.1 no-xauth". Do I need to configure such an parameter also when I use signatures?

Thank you in advance.

Dirk

2 Replies 2

hadbou
Level 5
Level 5

You are configuring that command as work around as it is a bug CSCdx48695. I don't think you need to configure it for signatures also.

Yes, but without it does not work!