cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

920
Views
0
Helpful
3
Replies
Highlighted
Beginner

How to configure VPN on Cisco 2901 to use digital certificates

Hi There!

I'm currently using my 2901 to enable VPN access through PPTP and would like to enable digital certificates for VPN access in order to enhance security. I couldn't find much info about this setup on the web. I've got two questions in my mind:

1 - I have a fairly simple setup and no CA on my network. Can I use the 2901 to create the certificate for my VPN clients?

2 - How can I configure my 2901 to work with this setup?

Thanks!

1 ACCEPTED SOLUTION

Accepted Solutions
VIP Advisor

PPTP is effectively

PPTP is effectively deprecated.  You should expect poor or buggy support.

This is an example I wrote of how to deploy Cisco AnyConnect on an IOS router using IKEv2 and certificates.

http://www.ifm.net.nz/cookbooks/Cisco-IOS-router-IKEv2-AnyConnect-Suite-B-Crypto.html

3 REPLIES 3
VIP Advisor

PPTP is effectively

PPTP is effectively deprecated.  You should expect poor or buggy support.

This is an example I wrote of how to deploy Cisco AnyConnect on an IOS router using IKEv2 and certificates.

http://www.ifm.net.nz/cookbooks/Cisco-IOS-router-IKEv2-AnyConnect-Suite-B-Crypto.html

Beginner

Philip,

Philip,

Fantastic, thank you for the direction. My clients will be using iphones to log on VPN. Should I follow the same recipe to import the certificates (just drop .pem files of the iPhone)?

VIP Advisor

Use the Cisco AnyConnect VPN

Use the Cisco AnyConnect VPN client on iPhone to connect.

I believe you can just email the certificate to the user and then have the user double click on it to install the certificate.