Re: Parallel IPSec tunnels to one remote ip address
If you need them both to work at the same time towards the same peer address in the other end, you can use a fvrf to assign a default route that points out that dsl interface, and then use that vrf in your ipsec profile.
crypto isakmp profile test keyring test match identity address x.x.x.x 255.255.255.255 dsl
crypto ipsec transform-set test esp-aes 256 esp-sha-hmac ! crypto ipsec profile test set transform-set test set isakmp-profile test !
interface tunnelx tunnel vrf dsl tunnel protection ipsec profile test
This should make a new tunnel interface, so you will probably need either a new dmvpn on the hub as well, or you could try the same dmvpn config, just with another GRE address, not sure if that will work. But the config will allow you to have both your regular dmvpn and one using the dsl, by seperating the routing table into a global that handles your regular dmvpn and the dsl one that handles the dmvpn over dsl.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...