this looks good..did you give cry isa iden hostname ? I made this work just few
days back in my GNS.
Gaurang.
________________________________
From: GuardGrid <[email protected]>
To: Gaurang Pandya <[email protected]>
Cc: ccie_security <[email protected]>
Sent: Friday, July 27, 2012 12:28 AM
Subject: Re: [OSL | CCIE_Security] Preshared Key with Hostnames
Request profile
crypto isakmp profile ISAKMP_PROF
initiate mode aggressive
keyring default
I tried with/without Self-identity fqdn, same result.
On Thu, Jul 26, 2012 at 2:03 PM, Gaurang Pandya <[email protected]> wrote:
post your isakmp profile.
>
>
>Gaurang.
>
>
>
>
>________________________________
> From: GuardGrid <[email protected]>
>To: ccie_security <[email protected]>
>Sent: Thursday, July 26, 2012 10:46 PM
>Subject: [OSL | CCIE_Security] Preshared Key with Hostnames
>
>
>
>keep getting this error on the initiator even though a profile has been
>defined to initiate aggressive and there is a preshared key for the peer,
>
>
>*Jul 26 05:06:34.866: ISAKMP:(0):Can not start Aggressive mode, trying Main
>mode.
>*Jul 26 05:06:34.866: ISAKMP:(0): No Cert or pre-shared address key.
>*Jul 26 05:06:34.866: ISAKMP:(0): construct_initial_message: Can not start
>Main mode
>
>
>anything specific that is needed in this case to make it work correctly on
>the initiator?
>_______________________________________________
>For more information regarding industry leading CCIE Lab training, please
>visit www.ipexpert.com
>
>Are you a CCNP or CCIE and looking for a job? Check out
>www.PlatinumPlacement.com
>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit
www.ipexpert.com
Are you a CCNP or CCIE and looking for a job? Check out
www.PlatinumPlacement.com