03-06-2010 11:14 AM
Hi,
In the SNF 2.0 templates documents I see that the command below is required for ezvpn configuration at the IOS server.
crypto keyring ezvpn-spokes
pre-shared-key address 0.0.0.0 0.0.0.0 key #####
I have seen other ezvpn config templates where this command is not used. Is this command a requiment for ezvpn server configuration?
this would be to provide connectivity for ezvpn clients using cisco vpn client software and for ezvpn remote tele router configuration.
Any body have and insight onto this.
Andy
Solved! Go to Solution.
03-08-2010 03:35 PM
Hi,
A keyring is a repository of preshared and (RSA) public keys.
The keyring is used in the ISAKMP profile configuration mode.
The ISAKMP profile successfully completes authentication of peers if the peer keys
are defined in the keyring that is attached to this profile.
This command is not mandatory, is just a way to match a keyring to an ISAKMP profile
(if using profiles).
Federico.
03-08-2010 03:35 PM
Hi,
A keyring is a repository of preshared and (RSA) public keys.
The keyring is used in the ISAKMP profile configuration mode.
The ISAKMP profile successfully completes authentication of peers if the peer keys
are defined in the keyring that is attached to this profile.
This command is not mandatory, is just a way to match a keyring to an ISAKMP profile
(if using profiles).
Federico.
03-08-2010 04:12 PM
Thanks Federico for the clarification that helps.
Andy
.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide