11-26-2013 02:11 PM - edited 02-21-2020 07:21 PM
Recently got blind-sided with ASA that no longer used isakmp, but ikev1 and ikev2 in its configs for the crypto portion.
Can anybody tell me if the L2L IPSec tunnel for ios version 15.3 (cisco 896VA) still uses "crypto isakmp" as the parameters?
I did see it on this guide, but again I don't know what ios version this guide is referencing.
Should I be expecting to use crypto ikev2 ... or crypto ikev1... ? Sorry I do not have the router in front me but I know it is running code 15.3
Thanks,
Pete
11-27-2013 12:34 AM
Pete,
(Shameless plug)
IKEv1 syntax replaces more of ISAKMP commands on ASA, routers still usa isakmp.
The underlying operation on ASA did not change IKEv1/ISAKMP funcitons exactly the same way.
M.
Message was edited by: Marcin Latosiewicz, edited for clarity.
11-27-2013 02:22 AM
although the command-syntax changed on the ASA, you still can configure it with the old syntax. The ASA will translate it automatically and when you do a show run, you see the new commands. But you don't have the help available with the old syntax.
--
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni
11-27-2013 07:04 AM
I believe I got the new ASA syntax properly configured. I was wondering if the same was true of ios version 15.
We are trying to create a L2L IPsec VPN between the ASA and Cisco 896VA secure router, and preferably use ikev2.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide