Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN over OSPF

I have an OSPF network, backbone plus several areas. I need to encrypt certain traffic flows between the two areas via the backbone. I'd like to keep the OSPF on the outside of the VPN and essentially just enncrpt the payload of the data packets between the two areas. The main reason is I have different classifications of data or subnets. I dont particulary want to GRE tunnel OSPF, but have the IPSec sit on top if this makes sense?? Any help is appreciated. The ABRs are ASA's and 2800 ISRs.

Thanks, Wayne

2 REPLIES
New Member

Re: VPN over OSPF

IPSec doesn't support multicast (that OSPF is running on) so GRE is needed to build neighborship.

New Member

Re: VPN over OSPF

Hi,

I want to avoid if possible using OSPF within IPSec as it needs to maintain Area 0 connectivity. I dont want to terminate the VPN on a backbone router and re-establish a new one either to get me to the OSPF area I need as this VPN will be point-to-point between two OSPF areas.

I've been reviewing the use of open transport VPNs where essentially I just want the payload of an IP packet encrypted and everything else to work as normal.

Thanks, Wayne

119
Views
0
Helpful
2
Replies