Hi, The GetVPN is able to connect without the IP address of the server specified.... That was the trick, now the tricky part is that for redundancy (if they asked you) you need to configure the IP address of the server in order for the cluster to be up and then you remove it.
The output should appear with 0.0.0.0 0.0.0.0.... Mike Date: Thu, 22 Mar 2012 01:36:39 +0300 From: [email protected] To: [email protected] Subject: [OSL | CCIE_Security] GDOI Multicast Key Server ID Hello , I am configuring GET VPN using multicast if in the exam they ask me to match the output and the key server id in the show crypto gdoi ks members is 0.0.0.0 how my configuration should looks like now when i do show crypto gdoi ks members the output is showing key Server ID : 22.22.22.22 ( what shall i do ot make it appear 0.0.0.0 ) crypto gdoi group GET identity number 1 server local rekey address ipvr 105 ( for multicast ) rekey retransmit 10 num 2 rekey authentication mybupkey rsa CISCO address ipv4 22.22.22.22 ( My KS IP address ) sa ipsec 1 profile ipsec.prof match address ipvr 106 ( for intersting traffic ) replay counter window size 64 _______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
