- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- WAN Routing
- >
- Re: Ipsec vpn in hp msr 2003
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-03-2016 04:42 AM
тАО11-03-2016 04:42 AM
Hi, i am trying to make ipsec vpn between two hp msr routers. In one end peer is assigned statically. And other end i have to configure ipsec peer as dynamic... But my msr 2003 router is not taking remote-address as 0.0.0.0 under 'ipsec policy ______ isakmp' .
Will this router hardware supports dynamic ipsec vpn..
my current image version is ----Boot image: flash:/msr2000-cmw710-boot-e0401l13.bin
version information is included as attachment
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-09-2016 09:54 AM
тАО11-09-2016 09:54 AM
SolutionHi,
Similar discussion you can find in community archives:
Please take a look attached guide: '"IPsec P2MP setup with zero touch in hub"
I haven't tested yet, but hope it works as expected.
Mike
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-09-2016 08:45 PM
тАО11-09-2016 08:45 PM
Re: Ipsec vpn in hp msr 2003
Hi mike,
Thank you for your replay..
I think it was problem with that platform, may that image or hardware is not supporting dynamic..So i tried with different HP MSR. In that router i was able to do the dynamic configuration . Until now it works perfectly
Thanks & Regards,
Abdul
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-10-2016 07:09 AM
тАО11-10-2016 07:09 AM
Re: Ipsec vpn in hp msr 2003
Mike
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-11-2016 05:49 AM - edited тАО11-11-2016 05:50 AM
тАО11-11-2016 05:49 AM - edited тАО11-11-2016 05:50 AM
Re: Ipsec vpn in hp msr 2003
Hi mike,
This was my topology.
In msr 20-10
I set my ipsec peer ip as a static ip (which is configured on interface of msr 2003)
In msr 2003
I was not able to give peer ip as 0.0.0.0 ( so that anyone with valid credentials can make ip sec tunnel with him) under ipsec policy... But i rectified the problem by inter changing the router. msr 20-10 was taking peer ip as 0.0.0.0 ..Now it is working properly .
I attached the topology with this. PFA the same
Thanks
Abdul
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-11-2016 08:57 AM
тАО11-11-2016 08:57 AM
Re: Ipsec vpn in hp msr 2003
Ok, in your MSR 2003 this part wasn't possbile?
Create a keychain named key 1 and specify the pre-shared key. In this scenario, we create an open keychain with 1 password to any address. There could be more than 1 keychain with multiple passwords defined to address spaces.
ike keychain key1
pre-shared-key address 0.0.0.0 0.0.0.0 key simple password
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-12-2016 10:04 PM
тАО11-12-2016 10:04 PM
Re: Ipsec vpn in hp msr 2003
That command was taking. But that is only for the key no?. Means this key can be used for any address. But inside IPsec policy we have to give remote address . That remote-address it was not taking as 0.0.0.0 (means anyone can make IPsec tunnel with him,if someone with valid credentials initiated a tunnel request). But same configuration model I used in msr 20-10 , it was pretty impressive
Thanks
Abdul