Setting up Site to Site VPN with Dynamic IP at 1 end...

Hi,

I've got a Cisco 837 and a Cisco 857 that I want to setup a site to site vpn - normally this wouldn't be too much trouble but the 857 end of the tunnel only has a dynamic public IP address.

Here are the 2 lines that I use in the config on the 837 (the one that does have a static)- ! crypto isakmp key address 210.xxx.xxx.xxx no-xauth ! crypto map cm-cryptomap 110 ipsec-isakmp set peer 210.xxx.xxx.xxx

Is there a way to make the 857 (dynamic ip) always initiate the tunnel so that the 837 doesn't need to have an IP specified?

Any help or comments appreciated

cheers

martin

read more and respond »

Posted 5 years ago by Martin in Cisco Systems

Report misuse

Image for Setting up Site to Site VPN with Dynamic IP at 1 end...