DMVPN: Is there a way for NHRP to inspect ISAKMP for Nated poke address?
Setup: 1 hub and 1 Spoke Staticly nat, and 1 other spoke on the open internet (Public address). Is there a way to setup NHRP to inspect the ISAKMP profile of it's spoke and send to the other spoke for dynamic Buildup of a spoke (nat) to spoke tunnel ?
Currently, from looking a packet traces and debugs, the spoke seem to not even try if one spoke is behind a nat address. I understand how it can work to the HUB because the know outside firewalled static address of the DMVPN hub is placed into the Tunnel NHRP mappings.
Re: DMVPN: Is there a way for NHRP to inspect ISAKMP for Nated p
I don't think NHRP can inspect anything on the ISAKMP. NHRP is just a protocol to map the logical address to a physical address, so that packets can be delivered directly to the router closest to the destination. As long as the tunnel traffic can flow and the NAT is configured rightly, spoke-to-spoke tunnel should work.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...