Has anyone ever considered using MACSEC inside an L2TPv3 tunnel both configured on the customer routers for securing DCI links?
I am presently working on L2TPv3 with IPSEC as a DCI solution over WAN ISP connection between two data centres. I started considering if MACSEC could be an option to reduce overheads and have better performance.
WAN ISP links are using QnQ over an MPLS core