cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Community Helping Community

419
Views
0
Helpful
1
Replies
Participant

DMVPN and IPSec with PA firewall

Hi all,

i would like to ask duplicate question.i already ask this question in previous post.

https://community.cisco.com/t5/vpn-and-anyconnect/paloalto-fw-and-cisco-router-ipsec/td-p/3834063

Last time i can resolve with your advice. now i integrate DMVPN in previous setting. I am configuring IPSEC tunnel with VTI for Router to FW Tunnel and DMVPN tunnel for R1 to R2. After configuring ,all tunnel are up and work properly.I use one certificate and one trustpoint. I use different certificate MAP for VTI and DMVPN

After i reboot router ,the tunnel of FW to router is down.Cannot automatically up.If i remote "certificate map" in ikev2 profile and then reput again,tunnel is up. But DMVPN tunnel is always stable.

I check debug log but i don't know what error.Please let me know my weak point.

 

Everyone's tags (2)
1 ACCEPTED SOLUTION

Accepted Solutions
Highlighted
Participant

Re: DMVPN and IPSec with PA firewall

Now I can solve by using two certificates.

View solution in original post

Everyone's tags (3)
1 REPLY 1
Highlighted
Participant

Re: DMVPN and IPSec with PA firewall

Now I can solve by using two certificates.

View solution in original post

Everyone's tags (3)
CreatePlease to create content
Content for Community-Ad
FusionCharts will render here