08-11-2017 07:10 AM - edited 03-05-2019 08:59 AM
I have tried creating a vpn tunnel with my 2901 and can not get it to recognize the command crypto isakmp, I have tried IOS
c2900-universalk9-mz.SPA.154-3.M3 and c2900-universalk9_npe-mz.SPA.155-3.M6.bin. i have also activated the security lic, i think and only have 4 options after i type crypto. any ideas?
thanks.
Solved! Go to Solution.
08-11-2017 07:37 AM
I run the following -
c2900-universalk9-mz.SPA.155-3.M5.bin
This is on a 2921.
AE-SRST-01(config)#crypto ?
call Configure Crypto Call Admission Control
ctcp Configure cTCP encapsulation
dynamic-map Specify a dynamic crypto map template
engine Enter a crypto engine configurable menu
gdoi Configure GKM (Group Key Management, GDOI or G-IKEv2) Policy
gkm Configure GKM (Group Key Management, GDOI or G-IKEv2) Policy
identity Enter a crypto identity list
ikev2 Configure IKEv2 Options
ipsec Configure IPSEC policy
isakmp Configure ISAKMP policy
key Long term key operations
keyring Key ring commands
logging logging messages
map Enter a crypto map
mib Configure Crypto-related MIB Parameters
pki Public Key components
provisioning Secure Device Provisioning
vpn Configure crypto vpn commands
wui Crypto HTTP configuration interfaces
xauth X-Auth parameters
What is the output of the show license
Also when you do a show ver, what are the licenses shown at the end?
Did you reboot the router after activating the relevant license? (only required if eval license was not activated beforehand) Was this an evaluation license?
You are using crypto command in Global Config mode? You will need to for the isakmp parameters. Only few options are available in user exec mode.
08-11-2017 07:37 AM
I run the following -
c2900-universalk9-mz.SPA.155-3.M5.bin
This is on a 2921.
AE-SRST-01(config)#crypto ?
call Configure Crypto Call Admission Control
ctcp Configure cTCP encapsulation
dynamic-map Specify a dynamic crypto map template
engine Enter a crypto engine configurable menu
gdoi Configure GKM (Group Key Management, GDOI or G-IKEv2) Policy
gkm Configure GKM (Group Key Management, GDOI or G-IKEv2) Policy
identity Enter a crypto identity list
ikev2 Configure IKEv2 Options
ipsec Configure IPSEC policy
isakmp Configure ISAKMP policy
key Long term key operations
keyring Key ring commands
logging logging messages
map Enter a crypto map
mib Configure Crypto-related MIB Parameters
pki Public Key components
provisioning Secure Device Provisioning
vpn Configure crypto vpn commands
wui Crypto HTTP configuration interfaces
xauth X-Auth parameters
What is the output of the show license
Also when you do a show ver, what are the licenses shown at the end?
Did you reboot the router after activating the relevant license? (only required if eval license was not activated beforehand) Was this an evaluation license?
You are using crypto command in Global Config mode? You will need to for the isakmp parameters. Only few options are available in user exec mode.
08-11-2017 07:59 AM
thanks
5
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide