>[оверквотинг удален]
> connect auto
> group <NAME> key <password>
> mode network-extension ! или без него по логике построения
> peer ххх.222.129.ххх ! Ваш ВПН сервер
> username USER password PASSWORD
> xauth userid mode local ! можно настроить и без юзера вход
> только по группе и сикрет кею
> определитье внетренний и внешний интерфейс
> crypto ipsec client ezvpn <NAME> inside
> crypto ipsec client ezvpn <NAME> outside Что-то делаю нетак:
crypto ipsec client ezvpn To-VPN-Server
connect auto
group XXX key ZZZ
local-address FastEthernet0/0.301
mode client
peer x.x.x.x
username DOMAIN\NAME password PASS
xauth userid mode local
!
!
!
!
interface FastEthernet0/0
no ip address
duplex auto
speed auto
no cdp enable
no mop enabled
!
interface FastEthernet0/0.1
encapsulation dot1Q 199
ip address 10.0.0.68 255.255.255.248
crypto ipsec client ezvpn To-VPN-Server inside
!
interface FastEthernet0/0.102
description -=ExternalPool=-
encapsulation dot1Q 102
ip address 212.X.X.X 255.255.255.240
no cdp enable
!
interface FastEthernet0/0.301
encapsulation dot1Q 301
ip address dhcp
no cdp enable
crypto ipsec client ezvpn To-VPN-Server
!
gw1#show cry ip c ezvpn
Easy VPN Remote Phase: 4
Tunnel name : To-VPN-Server
Inside interface list: FastEthernet0/0.1
Outside interface: FastEthernet0/0.301
Current State: IDLE
Last Event: TUNNEL_NO_PUBLIC_IP_ADD
Save Password: Disallowed
Current EzVPN Peer: X.X.X.X