Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

show crypto isakmp sa

Status
Not open for further replies.

mingtmak

Technical User
Apr 5, 2006
101
CA
trying to create a VPN tunnel between an ASA and a PIX 501. I have following everything step-by-step to get a simple site-to-site VPN working, but no luck.
so I've tried configuring the ASA as a vpn server and the pix as an EasyVPN client.
But I get a state of "OAK_CONF_XAUTH" when I do "show crypto isakmp sa"...

anybody have an insight into this?
 
Just add the keywords "no-xauth no-config-mode" to the isakmp key

isakmp key ########## address d.d.d.d netmask 255.255.255.255 no-xauth no-config-mode

This should do the trick. Let me know how it goes and good luck.
 
It ended up giving me a state of OAK_CONF_VPNC

but that's ok, I went back to scratch and was able to create a site-to-site VPN tunnel. Thanks for the help.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top