Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

IPSEC on Multilink - not all T1 utilized

I have a Multilink T1 setup (4 T1), where crypto engine connections show only 2 T1 being utilized. User response times over MultiLink is poor.

Environment is a GETVPN configuration.

Is there additional configuration requirements so that all T1 of Multilink participate in IPSEC?

Config. Snipet ***************

interface Multilink123

ip address x.x.x.x y.y.y.y

ip tcp adjust-mss 1360

no peer neighbor-route

ppp chap hostname blah-blah

ppp multilink

ppp multilink group 123

ppp multilink fragment disable

crypto map gdoi-map

Crypo Engine Output **********

ID Interface Type Algorithm Encrypt Decrypt IP-Address

3769 Mu123 IPsec AES+SHA 0 18683 10.0.0.0

3770 Mu123 IPsec AES+SHA 16644 0 10.0.0.0

3771 Mu123 IPsec AES+SHA 0 0 0.0.0.0

3772 Mu123 IPsec AES+SHA 19 0 0.0.0.0

1 REPLY
New Member

Re: IPSEC on Multilink - not all T1 utilized

scratch this post - I was misreading the crypto engine output.

All is good - thx

209
Views
0
Helpful
1
Replies