2 Site MPLS to IP VPN Failover

Unanswered Question
Oct 17th, 2007
User Badges:

We are trying to setup a two site MPLS network on AT&T to failover to a IPSEC site to site VPN automatically. Can this be easily done. This would be new using 2800 routers for MPLS and 2800 routers for the Internet connection. We have a PIX515E and ASA5510 for site to site VPN. I cannot find any solutions for this yet. AT&T allows static routes and BGP on the MPLS. Do we have any options to use GRE to enable Eigrp dynamic routing. Any help would be appriciated.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4 (1 ratings)
paolo bevilacqua Wed, 10/17/2007 - 15:38
User Badges:
  • Super Gold, 25000 points or more
  • Hall of Fame,

    Founding Member


yes the solution is to use GRE tunnels on both MPLS and internet clouds. Run any routing protocol and it will reroute around failures.

For the VPN you can or can not uses the PIX, (2801 support hardware encrption with adncaced ip service image), but the GRE tunnels must be terminated on the router anyway.

Hope this helps, please rate post if it does!


This Discussion