Re: site-to-site vpn 4.0 to cisco 3000 SOLVED

2007-02-26 Thread Claer
On Sun, Feb 25 2007 at 06:20, c l wrote: > Finally got this to work. Here's the config that ended up working. > > I'm not sure why I didn't notice before but the quick mode stuff wasn't > setup correctly. > > ipsec.conf > ike esp from 192.168.1.0/24 to 10.10.0.0/16 peer 2.2.2.2 \ >main

Re: site-to-site vpn 4.0 to cisco 3000 SOLVED

2007-02-25 Thread William Bloom
Ah. Disregard my last post. I didn't realize that the 'ipsec' configuration specifies main mode (phase 1 negotiation) and quick mode (phase 2 negotiation) in separate substatements. Good find. That makes perfect sense. Bill On Feb 25, 2007, at 19:06, c l wrote: Finally got this to work.

Re: site-to-site vpn 4.0 to cisco 3000 SOLVED

2007-02-25 Thread c l
Finally got this to work. Here's the config that ended up working. I'm not sure why I didn't notice before but the quick mode stuff wasn't setup correctly. ipsec.conf ike esp from 192.168.1.0/24 to 10.10.0.0/16 peer 2.2.2.2 \ main auth hmac-sha1 enc 3des group modp768 \ quick au