08-25-2004 02:14 AM - edited 02-21-2020 01:19 PM
Hello!
i have the next scheme for a test for our customers:
there are four routers - a fisrt one is using as DMVPN hub, second and third are spokes and fours must connect to DMVPN hub only via IPSec site-to-site connection (required). Hub and spokes work good - all is fine. In this scheme is one problem: when i make configuration on fisrt and fours routers for site-to-site connection - link between these routers isn't establishing. Debugs say that these (first and fours) routers can't negotiate ISAKMP policies i have have defined previously. In attachment there are some config and debug info.
09-01-2004 07:47 AM
I have heard of similar setups being implemented so this should work. It could be a problem with the config. Also, try adding no-xauth to the end of the crypto key. That just might work for you.
09-04-2004 11:19 PM
What is the IOS versions, and could you post a clean (no passwords,keys,etc) version of the config.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide