solution for IP VPN failover on MPLS VPN in single router

Unanswered Question
Jul 7th, 2007

we have 3 location, all 3 is connected through L3 MPLS VPN , now we are planing to setup IPVPN for fail over but its not working in 2 location;s could u help regarding the same,

After L3 MPLS link goes down IPVPN get up but same was not happen , we have create tunnel and set matrix on each ip route.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
etplindia Sun, 07/08/2007 - 08:12


Configurations are as attached. We are

having MPLS/VPN from one ISP (Reliance) and

IPVPN from other (Sify) both terminated on

Cisco 2821 at both locations (Chakan and Auranagbad in India). Reliance is

primary link i.e. we want link from Sify

should work when Reliance link is down.

But Sify is telling to switch of Reliance

customer premise equipment whenever sify is

required. This will disconnect our other

location (apart from above two) which are connected only through Reliance.


Are you able to ping the tunnel interfaces on the tunnels?

Do you plan on sticking with static routes? Using static routes, particularly when you 2 dynamic networks as your transit networks(MPLS and Internet VPN) could lead to a lot of problems. One clear problem you could experience is if the serial interface stays up but isn't passing traffic the static route will remain up thus blackholing traffic.

You really should look to set up some sort of routing protocol.

I also see that Tun0 on your 2nd router configuration is not set up as an IPIP tunnel but rather a GRE. Is that correct?

etplindia Sun, 07/08/2007 - 09:31


Can you help us in setting up dynamic routing

on our routers?

Well I can certainly help on the tunnel side.

The problem you are going to have is on the MPLS side. Since it is a Layer 3 MPLS cloud you will need to have your carrier exchange routing information OR you will need to set up tunnels on the MPLS side as well to avoid that.

The easiest routing protocol to implement is EIGRP.

Which interface is your peering interface with your MPLS cloud?

To turn up EIGRP just enter

router EIGRP 1


no auto-summary

etplindia Thu, 07/12/2007 - 13:14

we have done the activity as you said but problem is not solve

spremkumar Sun, 07/08/2007 - 22:29


Do change the routes as mentioned below and check..

ip route

ip route

Also you dont have a routes for via your serial.

Only the below routes via tunnel is available..

ip route Tunnel0 20

ip route Tunnel2 20

You dont have routes for pointing towards your tunnel interface..

Not under your tunnel interface..

do throw more clarity on subnets being used and also a small topological diagram representing your setup.


etplindia Mon, 07/09/2007 - 20:36

Dear Sir,

Yes we have route only for 192.168.5.x series coz, we don;t want pass all ip through SIFY

ip route Tunnel0 20

ip route Tunnel2 20

also i will confirm after adding the route

etplindia Tue, 07/17/2007 - 02:41

Dear sir

We have added the routes as you said but it's not working.

One more things is that it is also not woking through PBR.

so pls tell some solution for this

spremkumar Tue, 07/17/2007 - 02:44


Can you post the config after you have done the modifications ?



This Discussion