cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
334
Views
0
Helpful
2
Replies

IPSEC Tunnel established, but can't communicate with either private segment

pjay
Level 1
Level 1

Hi,

I am migrating from an IOS-IOS GRE tunnel over IPSEC to an IOS-VPN3000 IPSEC lan2lan tunnel. I can get passed phase 2 and even ensure that the two endpoints are communicating securly. Each private segment has rfc1918 addresses that do not overlap. My problem is routing, I think. Since I am no longer able to use GRE tunnels the requests are generated by each host on each of these segments and cannot be routed through the internet. Anyone know of a work around when I have limited routable address space?

2 Replies 2

cjacinto
Cisco Employee
Cisco Employee

You could try to use reverse route injection as outlined in:

http://www.cisco.com/warp/customer/471/rri.html

It worked! Thanks a bunch! One question...I tried to avoid that since I don't like running multiple routing protocols here so I tried using static routes and it didn't seem to work. Any idea why?

Thanks,

Pjay