VPN Green ---Ce8 (Site A)--->pe2--->pe3--->Ce2 (Site B)
VPN Green IGP is eigrp and VPN routes are all propagated fine and all Sites can see eachther.
Internet access is through an interface on pe3 connecting to the internet gateway.This is the default route in the global table.
c8 has a subinterface that i use for the internet connection from VPN Green. I have configured the vrf static route for internet connectivity on pe2 pointing to the next-hop subinterface on ce8, and also configured the reverse route from the internet.
From Ce8, i can ping the internet fine and under Ce8 (which is part of VPN Green), i can see the internet route that i configured under pe2 being advertised as below
D*EX 0.0.0.0/0 [170/30720] via 10.82.1.2, 01:03:57, FastEthernet0/0.82
BUT, this same route is not being propagated in the other sites i.e Ce2, so that means i can not get to the internet . I have tried putting a static route in ce 2 point to ce8 but still no luck.
How can i get the default route thats in ce 8 be propagated and used in ce2?
As always, you help is always appreciated. I have looked at the link you gave me but it looks like the same thing i did. My issue really is , i have the default route in the Ce8 but not in ce2, attached is the Configs for all the routers. maybe i have missed something. I want to use CE8 as a hub for the internet connectivity, i dont want to put other static routes on pe3 to enable ce2 to route to RR (Internet). Traffic Must go through ce2 to go to the internet
I am sure the changed config you gave me should work but it means i create a vrf for internet connectivity and also configure route targets etc for any vpn that needs internet. Thats not what i want to do. If i create the internet vrf, my default route that i have originated in the core IGP-OSPF disappears. I dont want that either. Ce8 should be the Hub for internet connectivity for all the other sites through the internet sub-interface
What i have done is be able to get ce8 to get to the internet as it has the global default route that i configured on pe2. Is there a flaw in my design or is there a way i can originate that global default injected into ce8-vrf green to the rest of the VPN sites like ce2? I have tried the default-information originate in eigrp but i cant seem to find that command , all i can see is default-information -in -out or allowed, do they have the same feature ?
As always, i appreciate your help, i was careful enough to try the config you gave me b4 i posted my last post. I think there was some misunderstading between our communications on what i was traveling to achieve.
I have been busy with for the last fews days, I am going to try again what you suggested, Please dont provide new configs yet, i will post my results i soon as i can
With XR 4.2.0 the ASR9000 is releasing a new line of hardware models. This amongst others is the RSP440, the next generation RSP with faster switch fabric along with Typhoon based Linecards, the next generation network processor.
The Cisco EPN system incorporates a network architecture designed to consolidate multiples services on a single Multiprotocol Label Switching (MPLS) transport network. This network is designed primarily based on...
Internet security is important with the increasing attacks that are happening every day. Many internet and browsing security solutions exist, but some are not very easy to use or maybe the question is how can I enable them?