Ahh that is it. Ok so I will need to match my tunnel-group to the OU that is defined in the Certificate. So that is the link. Ok I will do some additional reading on that.
Thank you!! James From: Marta Sokolowska [mailto:[email protected]] Sent: Friday, November 23, 2012 12:52 PM To: James K Keddington II Cc: ccie security Subject: Re: [OSL | CCIE_Security] IPexperts Technology Lab 4A Part 2 Task 4.11 James, make sure that the client's certificate has got the same OU field as the name of the tunnel-group (e.g. you should have OU=EZgroup2 in the certificate that you use to connect via Cisco VPN Client). Additionally, can you post ISAKMP debugs from Cisco ASA? Marta Sokolowska. _____ No virus found in this message. Checked by AVG - www.avg.com Version: 2013.0.2793 / Virus Database: 2629/5914 - Release Date: 11/23/12
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
