Policy of ITS phase 2 ISAKMP DMVPN is not acceptable!

Hello world

I'm having toruble with a DMVPN basic configuration. In debugging I can see how ends the phase 1 ISAKMP, but they phase 2 proposal fails. It says something about a cryptomap that does not exist. I thought that with these configuration I have needs not a cryptomap. The configuration of routers and print screen debugging are attached. Any help would be popular.

Gustavo

Try this:

Crypto ipsec transform-set average esp-3des esp-md5-hmac

transport mode

Also, since both the rays and the hub are behind a NAT NAT - T, you'll need, so certainly don't turn it off.

Tags: Cisco Security

Similar Questions

Maybe you are looking for