Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to configure vpn ipsec between cisco router 881 with sophos utm 120 version 9

How to configure vpn ipsec between cisco router 881 with sophos utm 120 version 9



This thread was automatically locked due to age.
Parents
  • Hi, and welcome to the UTM Community!

    3DES is old, slow and less secure than AES 128.  I would clone the "AES 128 PFS" policy in the UTM to create one named "AES 128 PFS SHA2 256" and adapt your Cisco to that if possible.

    Your current picture corresponds to the following with guesses at the lifetimes.

    Remember to check that the DPD and NAT-T settings on the 'Advanced' tab are the same as in the Cisco.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hi, and welcome to the UTM Community!

    3DES is old, slow and less secure than AES 128.  I would clone the "AES 128 PFS" policy in the UTM to create one named "AES 128 PFS SHA2 256" and adapt your Cisco to that if possible.

    Your current picture corresponds to the following with guesses at the lifetimes.

    Remember to check that the DPD and NAT-T settings on the 'Advanced' tab are the same as in the Cisco.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data