VPN with Cisco 3550 (update)admin | Thursday, May 20th, 2010 | 2 Comments »
Here’s a quick update on my attempts to make Cisco’s L3 3550 switch a VPN endpoint. Here is the original post:
I’ve tried another method to get “some” kind of tunneling to work between the 3550 and 1811 router. I thought maybe a VTI could possibly work. To test this theory out. I first created a VTI between the 1811 and 3620 router successfully.
I then left the 1811 config’s alone and tried to configure the 3550 as close as possible to the 3620 router. I thought maybe I can squeak by and use VTI’s “tunnel” interface to ride through the already established ISAKMP tunnel, but to no avail.
I hate to give up, but I think that at this point, the 3550 just does NOT suppose IPsec in any form. It supports ISAKMP, and you can setup an IKE phase 1 tunnel. But anything beyond that, the IKE phase 2, or anything that has to do with IPsec is not supported.
Cisco will let you configure the switch, but the image just won’t support it. It would be nice if they wouldn’t let you get this far in the first place, prompting you that the commands are not supported, but oh well…you live and learn…