Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Return traffic throug GRE tunnel

Hi all
I've reached a dead end in my mind regarding policy based routing and need some pointers
This is my case.
I've got two 1921 routers connected over a WAN provided by an ISP. The ISP are able to route some of our RFC1918 subnets but not all and for those I experimenting with GRE tunnels as a solution.
HQ Router connects directly to the ISP router so does the remote router. Both have the local ISP router as default gateway and they can ping each other on the ISP provided IPs, so far all good.
Now, the ISP can route some of our subnets but not all and I'd like to send those subnets in a tunnel to the remote site, let's say at the remote site is not routable but is. I've set up the interfaces on the remote router an can ping ok but not as expected.
I've set up the tunnels on both ends and logging shows that traffic towards is passing through the tunnel from HQ to remote site but is then lost since the remote router has the ISP router as default GW. My gut tells me this would be a case for policy based routing but I've only used that before for "outbound" traffic based on source of destination IP. But this time I need to send the returning traffic through a tunnel, the incoming traffic towards on the remote router is already coming through the tunnel but not the return traffic. Am I totally lost or what?


  • LAN Switching and Routing
New Member

Return traffic throug GRE tunnel

Might be corny but I'll answer my question myself since I've solved my problem.

I was hoping to avoid having to use VRF but ended up doing that anyway. On the remote site I set up a VRF that included the tunnel, the subnet and nessecary routes to establish the tunnel. The subnet was left as it was and is not sent through the tunnel.


This widget could not be displayed.