VPN3K FEATURE REQUEST: IPSec encapsulation of Multicast packet
Just downloaded the Internet draft of "IP Multicast issues with IPSec" authored by two Cisco engineers. Seems like there is a progress to encapsulate multicast packet within IPSec. Since the draft is written by Cisco engineers, do the VPN3K`s developers consider to implement this feature on the next firmware release ? FYI , Netscreen devices are able to encapsulate OSPF packets within the IPSec tunnel. I am wondering when the Cisco VPN3K will have this capability too.
Re: VPN3K FEATURE REQUEST: IPSec encapsulation of Multicast pack
Thanks for the information! I am aware about the solution to use GRE to encapsulate the OSPF and then encrypted it with IPSec. This has been discussed a lot on this forum and we have implemented it to some of our customers.
But the disadvantage of this solution is one has to put two routers behind the VPN3K to termincate the GRE tunnel, because VPN3K doesn`t have the capability to speak GRE. With NetScreen solution, it is very easy to do dynamic routing (with multicast speaking routing protocol such EIGRP, OSPF). And this is my main concern, because we are having difficulties to provide VPN3K solution to the customer, when the competitor comes with NetScreen solution to do encrypted dynamic routing through the Internet.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...