Hi, I seem to remember that if you change any of the vpn settings through the CLI you need to remove the crypto map from the interface before & re-apply after. Is this still the case - ie do you have to have downtime on existing vpn's when adding new...