cancelar
Mostrando los resultados de 
Buscar en lugar de 
Quiere decir: 
cancel
645
Visitas
0
ÚTIL
2
Respuestas

VPN Client and IKE main mode negotiation

jsol
Level 1
Level 1

Is it possible to configure the Cisco VPN client to use IKE Main Mode negotiation with pre-shared keys? And with digital certificates? If yes, how could I do it?

2 RESPUESTAS 2

jackko
Level 7
Level 7

just wondering the reason to insist the use main mode. both main and aggresive modes achieve the same result, except less steps involved with aggresive.

When a VPN is configured to use pre-shared keys and permits the VPN client to negotiate the session in aggressive mode, it sends a hash of this key in clear text, so...

The solution for this should be to deactivate the option which permits the VPN client to use aggressive mode.

This is why I'd like to know if I can force the VPN client to negotiate only in main mode.