Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

IPSec Over MPLS

We are looking at deploying an IPSec VPN from CE-CE routers across an MPLS backbone. There will be several CE, PE and P routers and we will manage the MPLS backbone. At all sites, the CE routers will be Cisco 7600 series with a VPN Accelerator module and a Firewall Services module. At all sites, the Cisco 7600 will also support an 802.1q trunk to a Layer 2 switch configured with 3 VLANS.

Packets coming from the WAN through the outside port (configured to belong to a port VLAN) are directed by the PFC2 to the VPN module outside port. The VPN module decrypts the packets and changes the VLAN to the corresponding interface VLAN and then presents the packet to the router through the VPN module inside port. The

MSFC then routes the packet to the Firewall Services module outside port configured as an Interface VLAN and then back out through the inside port interface VLAN to the MSFC, routed as normal, and out to the required VLAN host.

2 REPLIES

Re: IPSec Over MPLS

Sounds good, ... what is your question?

Re: IPSec Over MPLS

Hi, just saw the question in the other post. Should work afaik.

Regards, Martin

149
Views
0
Helpful
2
Replies
CreatePlease to create content