{"id":493,"date":"2010-08-18T17:19:40","date_gmt":"2010-08-18T17:19:40","guid":{"rendered":"https:\/\/fir3netwp.gmsrrpobkbd.com\/2010\/08\/18\/configuring-a-preshared-site-to-site-vpn-between-2-cisco-routers\/"},"modified":"2023-01-06T17:24:00","modified_gmt":"2023-01-06T17:24:00","slug":"configuring-a-preshared-site-to-site-vpn-between-2-cisco-routers","status":"publish","type":"post","link":"https:\/\/www.fir3net.com\/Routers\/Cisco\/configuring-a-preshared-site-to-site-vpn-between-2-cisco-routers.html","title":{"rendered":"Configure Pre-Shared Site to Site VPN between Cisco Routers"},"content":{"rendered":"
Below shows the configuration for one side of a Site to Site VPN between 2 Cisco routers using pre-shared keys.<\/p>\n
router(config)# crypto isakmp enable<\/pre>\nPhase 1<\/strong><\/p>\n
router(config)# crypto isakmp policy 10\r\nrouter(config-isakmp)# authenticaton pre-share\r\nrouter(config-isakmp)# encryption [?]\r\nrouter(config-isakmp)# group [?]\r\nrouter(config-isakmp)# hash [?]\r\nrouter(config-isakmp)# lifetime 86400<\/pre>\nrouter(config)# crypto isakmp identity address
\nrouter(config)# cryption isakmp [key] address [peer ip]<\/p>\nPhase 2<\/strong><\/p>\n
router(config)# crypto ipsec transform-set [name] [?]\r\nrouter(config)# crypto ipsec lifetime [seconds\/kilobytes] [value]<\/pre>\nrouter(config)# ip access-list extended S2S-VPN-TRAFFIC
\nrouter(config-ext-nacl)# permit ip [local network] [mask] [remote network] [mask]<\/p>\nrouter(config)# crypto map S2S-VPN-MAP 100 ipsec-isakmp
\nrouter(config-crypto-map)# match address S2S-VPN-TRAFFIC
\nrouter(config-crypto-map)# set peer [peer ip]
\nrouter(config-crypto-map)# set transform-set [set]<\/p>\nrouter(config)# int [int name]
\nrouter(config-if)# crypto map S2S-VPN-MAP 100<\/p>\n","protected":false},"excerpt":{"rendered":"Below shows the configuration for one side of a Site to Site VPN between 2 Cisco routers using pre-shared keys. router(config)# crypto isakmp enable Phase 1 router(config)# crypto isakmp policy 10 router(config-isakmp)# authenticaton pre-share router(config-isakmp)# encryption [?] router(config-isakmp)# group [?] router(config-isakmp)# hash [?] router(config-isakmp)# lifetime 86400 router(config)# crypto isakmp identity address router(config)# cryption isakmp [key] … Read more<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12],"tags":[],"yoast_head":"\n
Configure Pre-Shared Site to Site VPN between Cisco Routers - Fir3net<\/title>\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\t\n\t\n\t\n