Wanted to update all, that its working now..just reloading router did the 
trick. 


Gaurang.


________________________________
 From: Gaurang Pandya <[email protected]>
To: "[email protected]" <[email protected]> 
Sent: Thursday, July 19, 2012 1:10 AM
Subject: [OSL | CCIE_Security] DMVPN in Aggressive mode
 

Hi All,

Is it possible to make DMVPN to work in Aggressive mode and using hostnames 
(defined with ip host comands, instead of ip address), I am ok specifying 
pre-shared key as single host name (R1 or R2 etc.,), instead of wild card mask 
with all 0's, just to test. But I am keeping on getting following errors in 
spoke..

%CRYPTO-6-IKMP_MODE_FAILURE: Processing of Aggressive mode failed with peer at 
<hub-ip-addr>

and debug says..

ISAKMP:(0):Found HOST key in keyring PSK
ISAKMP:(1035): processing HASH payload. message ID = 0
ISAKMP:(1035): Hash payload is incorrect!

I guess this is coming as i am using NMBA ip address (b'coz I am unable to use 
hostname there), in tunnel config.


has any one tried it and was able to make it work?

Gaurang.

_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com

Reply via email to