I was reading the topic about running the IPSec between PE to PE, there we need to have Labeled packet encapsulated into GRE and then on the top of that we will have to enable the IPSec, so here we are hiding a label packet and again back to the IP so will it be good to have IP Sec in SP network!!! as a security consideration its okay but overall performance wise?
I did not tried MPLS IPSec in real environments, but I believe that it's performance is related also to the amount of throughput that you have to encapsulate into IPSec and the type of connection that you have between PE-PE. As I said I only tried in a lab environment and tests with heavy traffic generated by IPerf and it was OK over a E1 connection. But still this is a lab test.
1. Introduction Internet security is important with the increasing
attacks that are happening every day. Many internet and browsing
security solutions exist, but some are not very easy to use or maybe the
question is how can I enable them? In this referen...
Cisco Software Manager Server API Guide This document describes the
programmatic interfaces, RESTful APIs, which are supported by Cisco
Software Manager Server (CSM Server). Overview CSM Server supports a set
of finite RESTful APIs. The first step to use ...
If you are using Cisco's new linux-based Cisco Software Manager server,
then you probably want to make sure there is a startup service for
it.I'll assume that you've already installed the CSM server on a
systemd-based linux system. The commands given belo...