Hi, It seems you don't have Identity certificate on the router. Also, you should use DN as an identity. I'm not seeing group configuration too.
Key size on the client is by default 2k so I don't see any problem with that. Regards, Piotr 2011/10/8 Hussain Arsalan Ali <[email protected]> > I have been having this issue for a few days from now . Finally the > certificate got enrolled properly but when I dial towards that VPN Server it > doesnt happen . I did some debugs on the router and found out that the Cert > is being rejected . Clock and timezone are same on both the devices and when > I click Verify on VPN Client it says that the certificate is valid . The > only problem I am thinking about is that when i created the keys on IOS > device they were 1024 in size however when I requested certififate it shows > 2048 . This could be a possible keysize mismatch , other than that I cant > think of any . > > > Can you please let me know if you have faced simillar problem where the IOS > device is set for 1024 size and Client autometically gets 2048 size . > > Please check attachments. > > _______________________________________________ > For more information regarding industry leading CCIE Lab training, please > visit www.ipexpert.com > > Are you a CCNP or CCIE and looking for a job? Check out > www.PlatinumPlacement.com >
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
