09-03-2005 09:56 PM
I can not get ezvpn to worl with aes 256 it works with 3des and aes 128. Has any been able to to get ezvpn to work with AES 256?
09-08-2005 01:09 PM
check if your image supports AES encryption.
09-13-2005 02:00 AM
Which device do you use?
I have the same situation. My ezVPN server is VPN Concentrator and ezVPN Remote - IOS 12.4.
I suppose the problem is in IOS because 'sh crypto ipsec sa' shows there is no aes-256 or eas-192 transform sets.
I've open the case but still got no response form TAC.
09-13-2005 05:26 AM
Cisco 2821 as EzVPN server 2801 as remote. I tried 12.4 and 12.3(14) I cound not get it to work with AES 256 but it will work with AES 128. I just switched everything to DMVPN it works great.
09-13-2005 06:39 AM
Yes, as i said hardcoded transform sets in IOS ezVPN Remote code doesn't have an aes-256 proposal. So when you switched to DMVPN you made statical transform set.
I've got a response from TAC which state that it's a "design decision". A bit silly decision to my mind, it looks like a trivial bug.
Lets hope this we'll be corrected in future releases of IOS.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide