cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1935
Views
0
Helpful
1
Replies

DMVPN and IPSec with PA firewall

MrBeginner
Spotlight
Spotlight

Hi all,

i would like to ask duplicate question.i already ask this question in previous post.

https://community.cisco.com/t5/vpn-and-anyconnect/paloalto-fw-and-cisco-router-ipsec/td-p/3834063

Last time i can resolve with your advice. now i integrate DMVPN in previous setting. I am configuring IPSEC tunnel with VTI for Router to FW Tunnel and DMVPN tunnel for R1 to R2. After configuring ,all tunnel are up and work properly.I use one certificate and one trustpoint. I use different certificate MAP for VTI and DMVPN

After i reboot router ,the tunnel of FW to router is down.Cannot automatically up.If i remote "certificate map" in ikev2 profile and then reput again,tunnel is up. But DMVPN tunnel is always stable.

I check debug log but i don't know what error.Please let me know my weak point.

 

1 Accepted Solution

Accepted Solutions

MrBeginner
Spotlight
Spotlight

Now I can solve by using two certificates.

View solution in original post

1 Reply 1

MrBeginner
Spotlight
Spotlight

Now I can solve by using two certificates.