07-07-2007 11:01 PM - edited 03-03-2019 05:45 PM
we have 3 location, all 3 is connected through L3 MPLS VPN , now we are planing to setup IPVPN for fail over but its not working in 2 location;s could u help regarding the same,
After L3 MPLS link goes down IPVPN get up but same was not happen , we have create tunnel and set matrix on each ip route.
07-08-2007 06:34 AM
Could you post your configs and tell us exactly what is not working?
07-08-2007 08:12 AM
Sir,
Configurations are as attached. We are
having MPLS/VPN from one ISP (Reliance) and
IPVPN from other (Sify) both terminated on
Cisco 2821 at both locations (Chakan and Auranagbad in India). Reliance is
primary link i.e. we want link from Sify
should work when Reliance link is down.
But Sify is telling to switch of Reliance
customer premise equipment whenever sify is
required. This will disconnect our other
location (apart from above two) which are connected only through Reliance.
07-08-2007 08:23 AM
Are you able to ping the tunnel interfaces on the tunnels?
Do you plan on sticking with static routes? Using static routes, particularly when you 2 dynamic networks as your transit networks(MPLS and Internet VPN) could lead to a lot of problems. One clear problem you could experience is if the serial interface stays up but isn't passing traffic the static route will remain up thus blackholing traffic.
You really should look to set up some sort of routing protocol.
I also see that Tun0 on your 2nd router configuration is not set up as an IPIP tunnel but rather a GRE. Is that correct?
07-08-2007 09:31 AM
Sir,
Can you help us in setting up dynamic routing
on our routers?
07-08-2007 09:42 AM
Well I can certainly help on the tunnel side.
The problem you are going to have is on the MPLS side. Since it is a Layer 3 MPLS cloud you will need to have your carrier exchange routing information OR you will need to set up tunnels on the MPLS side as well to avoid that.
The easiest routing protocol to implement is EIGRP.
Which interface is your peering interface with your MPLS cloud?
To turn up EIGRP just enter
router EIGRP 1
network
no auto-summary
07-12-2007 01:14 PM
we have done the activity as you said but problem is not solve
07-08-2007 10:29 PM
Hi
Do change the routes as mentioned below and check..
ip route 124.7.0.0 255.255.0.0 221.134.86.101
ip route 124.30.0.0 255.255.0.0 221.134.86.101
Also you dont have a routes for 192.168.5.0/23.0 via your serial.
Only the below routes via tunnel is available..
ip route 192.168.5.0 255.255.255.0 Tunnel0 20
ip route 192.168.23.0 255.255.255.0 Tunnel2 20
You dont have routes for 192.168.10.0/11.0/12.0/14.0 pointing towards your tunnel interface..
Not under your tunnel interface..
do throw more clarity on subnets being used and also a small topological diagram representing your setup.
regds
07-09-2007 08:36 PM
Dear Sir,
Yes we have route only for 192.168.5.x series coz, we don;t want pass all ip through SIFY
ip route 192.168.5.0 255.255.255.0 Tunnel0 20
ip route 192.168.23.0 255.255.255.0 Tunnel2 20
also i will confirm after adding the route
07-17-2007 02:41 AM
Dear sir
We have added the routes as you said but it's not working.
One more things is that it is also not woking through PBR.
so pls tell some solution for this
07-17-2007 02:44 AM
Hi
Can you post the config after you have done the modifications ?
regds
07-09-2007 08:48 PM
Yes, I can able to ping both tunnel.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide