<[EMAIL PROTECTED]> 10/18/07 7:49 PM GMT+2:
> This is my config:

And you have the "sysopt connection permit-ipsec" enabled on the PIX? 

Do any of the end points have any other IPSec peers, so you can 
narrow down which end is misbehaving?

It's a shame that the PIX can't do GRE+IPSec. A router behind or 
instead of the PIX could though. You could have a smallish router do 
GRE and then make the PIX do IPSec for performance.

Regards,
Peter Rathlev

_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to