Linkys RV042 and Cisco 1811VPN Tunnel

1w3
1w3 used Ask the Experts™
on
Hi ,Any ideas for these messages on 1811 ?trying to create site to site tunnel between RV042 and cisco 1811.

1811 Log SHOWS :

%CRYPTO-6-IKMP_NOT_ENCRYPTED: IKE packet from 1.2.3.4 was not encrypted and it should've been.
%CRYPTO-4-IKMP_BAD_MESSAGE: IKE message from 1.2.3.4 failed its sanity check or is malformed
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Syed_M_UsmanSystem Administrator
Top Expert 2011

Commented:
look like 1.2.3.4 in not encrypting VPN key info.
you can try to change encrption level @ both router (Make sure both should match)
1w3

Author

Commented:
Syed, You mean change it to DES for Phase1 ?

1811 Config:
---------------
crypto isakmp policy 1
 encr 3des
 hash md5
 authentication pre-share
 group 2
 lifetime 28800
!
crypto isakmp policy 10
 encr 3des
 hash md5
 group 2
 lifetime 28800

crypto map BUCK 19 ipsec-isakmp
 description Tunnel to BUCK
 set peer 9.8.7.6
 set transform-set ESP-3DES-SHA
 match address 119      

access-list 119 permit ip 10.20.1.0 0.0.0.255  11.20.1.0 0.0.0.255

interface Dialer0
 ip address negotiated
 no ip redirects
 no ip unreachables
 no ip proxy-arp
 ip mtu 1452
 ip nat outside
 ip virtual-reassembly
 encapsulation ppp
 ip route-cache flow
 dialer pool 1
 dialer-group 1
crypto map BUCK
crypto ipsec df-bit clear

1w3

Author

Commented:
1811 Config continued:

crypto isakmp key xxxxxxxxxx  address 9.8.7.6
Become a Certified Penetration Testing Engineer

This CPTE Certified Penetration Testing Engineer course covers everything you need to know about becoming a Certified Penetration Testing Engineer. Career Path: Professional roles include Ethical Hackers, Security Consultants, System Administrators, and Chief Security Officers.

Syed_M_UsmanSystem Administrator
Top Expert 2011

Commented:
can you change encryption to sha1 and test
1w3

Author

Commented:
I did still not working and keep getting the same message
System Administrator
Top Expert 2011
Commented:
make sure your Password on both side is same, i would suggest you change the password and try. i would sugegst you chose atleat 8-10 Digiit/numbers key for testing
1w3

Author

Commented:
I have tried the key changing to alphabets but did not help..
1w3

Author

Commented:
Thanks

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial