03-16-2018 04:44 AM - edited 03-05-2019 10:07 AM
Hi
what is the use cases to choose/prefer one of the below VPN tech over other
DMVPN :as per my knowledge , DMVPN works over internet
GETVPN
FLEXvPN
03-16-2018 04:57 AM
Hi,
Try page 25 on this cisco live presentation
Ultimately:
DMVPN/FlexVPN - both work over the internet.
DMVPN is preferred for large scale Hub-Spoke + Spoke-to-Spoke
FlexVPN is preferred for Hub-Spoke, IOT and remote access
GETVPN - Private IP network only (MPLS), preserves IP header, so not routable on internet.
What is your use case? perhaps we can identify which best fits your requirements
HTH
03-17-2018 02:45 AM
thanks RJI
Will post things here later , stay tuned :) ,
so far we choosed DMVPN with dual hub , 2 x 2921 routers sits in DMZ Behind Firewall
any online document
thanks
03-17-2018 07:33 AM
Hi, You probably want to be running DMVPN Phase 3 and the Next Gen Encryption - use IKEv2 rather than v1 (isakmp).
Here are some useful links and examples:
https://www.cisco.com/c/en/us/about/security-center/next-generation-cryptography.html
http://www.labminutes.com/video/sec
https://integratingit.wordpress.com/2016/10/12/configuring-dmvpn-phase-3-dual-hub/
Good luck
03-17-2018 09:58 AM
Hello Raji
thanks for usefull links
I need config example while the Dual VPN routers sits in DMZ behind dual firewalls , non-of the above mentioned that
thanks
03-17-2018 10:44 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide