Wanted to update all, that its working now..just reloading router did the
trick.
Gaurang.
________________________________
From: Gaurang Pandya <[email protected]>
To: "[email protected]" <[email protected]>
Sent: Thursday, July 19, 2012 1:10 AM
Subject: [OSL | CCIE_Security] DMVPN in Aggressive mode
Hi All,
Is it possible to make DMVPN to work in Aggressive mode and using hostnames
(defined with ip host comands, instead of ip address), I am ok specifying
pre-shared key as single host name (R1 or R2 etc.,), instead of wild card mask
with all 0's, just to test. But I am keeping on getting following errors in
spoke..
%CRYPTO-6-IKMP_MODE_FAILURE: Processing of Aggressive mode failed with peer at
<hub-ip-addr>
and debug says..
ISAKMP:(0):Found HOST key in keyring PSK
ISAKMP:(1035): processing HASH payload. message ID = 0
ISAKMP:(1035): Hash payload is incorrect!
I guess this is coming as i am using NMBA ip address (b'coz I am unable to use
hostname there), in tunnel config.
has any one tried it and was able to make it work?
Gaurang.
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit
www.ipexpert.com
Are you a CCNP or CCIE and looking for a job? Check out
www.PlatinumPlacement.com
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit
www.ipexpert.com
Are you a CCNP or CCIE and looking for a job? Check out
www.PlatinumPlacement.com