Scaling IPSec VPNs and Meshes ?

From: Kevin Gannon (kevin@gannons.net)
Date: Tue May 22 2001 - 16:13:57 EDT


We are looking at deploying a Cisco IPSec VPN between a number
of our departments. However the problem is we do _not_ want to
terminate the peers on a central box. We want to create a a partial
mesh and most likely a full mesh.

The problem is the crypto peers , each time we add a new site
it means a huge pain in the ass creating all the new peers.
Is there anyway around this ?

I know MPLS would be ideal for this but we are already running
MPLS but we are required to also have IPSec and can not
have a central termination for the peers.

Regards,
Kevin

*********************************IMPORTANT NOTICE******************************
All e-mails for technical support must be cc'd to support@lancomms.ie. This
ensures that the call is logged with the support desk and the case is actively
tracked which speeds up the response you will receive. If you have an urgent
problem you _must_ contact the support desk directly on 01-4093030.
*****************************************************************************************



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:12:38 EDT