ipsec tunnel to loopback addr

Nov 13, 2005 0 Replies

between a 3640 running 12.3(5) and a pix 506 running 6.3(4) and cisco remote vpn client.



stalls at AG_NO_STATE with either endpoint



assigning same crypto map to Multilink int works fine



crypto isakmp client configuration group 3000client key ********* dns 192.168.4.80 domain x.x pool ippool acl 103 ! ! crypto ipsec transform-set myset esp-3des esp-sha-hmac ! crypto dynamic-map dynmap 10 set transform-set myset ! ! crypto map clientmap client authentication list userauthen crypto map clientmap isakmp authorization list groupauthor crypto map clientmap client configuration address respond crypto map clientmap 1 ipsec-isakmp set peer x.x.x.x set transform-set myset match address 104 crypto map clientmap 10 ipsec-isakmp dynamic dynmap


anything different, or limited, about assigning a crypto map to a router loopback addr than other types of interfaces? thanks


Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required