@Layardtd wrote:
Do you know why is not used? For me its too weak this access method.
The Pulse / Dynamic VPN works a little differently than a site-to-site VPN.
With the Dynamic VPN, the pre-shared key is used, however the Pulse client does not need to be configured with it. The Pulse client will authenticate the user first by using username/password credentials (over HTTPS) and there must be an access profile configured and tied with the dynamic VPN. Once the initial authentication passes, the configuration (including the IKE Phase 1 pre-shared key) is automatically downloaded to the client, and the authentication continues from there.