Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Creating two tunnels between a pair of routers

I am trying to configure a pair of ipsec tunnels between two routers for testing purposes. I'd appreciate any insight. I've attempted vti, secondary addresses, etc, to no avail.

Routers are 2851 ISR's with the AIM and IOS 12.4(15)T

  • Other Security Subjects
5 REPLIES

Re: Creating two tunnels between a pair of routers

Hi, there are many examples and guides on cisco.com. You can start there and then try to be a little more specific in your question.

A very basic example:

http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_configuration_example09186a008073e078.shtml

Another basic example with NAT:

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080194650.shtml

I hope that helps you to get get started.

New Member

Re: Creating two tunnels between a pair of routers

I agree that there are plenty of examples for creating a single tunnel between two routers, and I have experience with this. My goal is creating dual tunnels between two routers. Thanks for the effort.

Re: Creating two tunnels between a pair of routers

Why do you want to do that? Between dfferent interfaces you mean? In that case it is not much different from one tunnel.

In any case I recommend to use encrypted gre tunnels, as you may want to run some kind of routing protocol over the tunnels. It also scales much better.

New Member

Re: Creating two tunnels between a pair of routers

I don't need the function or overhead of gre. I am evaluating the ISR performance for ipsec and I have almost zero ipsec hardware in the lab. I only have 1 other router with at/greater hardware specifications as the device under test, so I was attempting the multiple tunnel approach to compare the performance specs of 1 tunnel on the DUT versus 10,20,30,etc tunnels.

Re: Creating two tunnels between a pair of routers

Just add lots of networks to each side, you will end up with many SA:s, which is virtually the same as multiple "tunnels".

203
Views
0
Helpful
5
Replies
This widget could not be displayed.