[c-nsp] trace via gre over ipsec tunnel

Michael Axelrod axelrod1 at comcast.net
Tue Feb 15 20:11:26 EST 2005


There is a bug associated with decrementing TTL when packet is CEF switched
into a GRE tunnel.
I believe if you disable CEF, the hop will appear. Don't know the bug ID,
but you can find it.
apparently the chunk of code that supposed to decrement ttl is missing ;-(

Michael
----- Original Message -----
From: <vladimir.savostin at eu.effem.com>
To: <cisco-nsp at puck.nether.net>
Sent: Tuesday, February 15, 2005 4:21 AM
Subject: [c-nsp] trace via gre over ipsec tunnel


> Hi,
>
> We have following network configuration:
> Host1--Router1--(GRE/IPSEC tun)--Router2--(GRE/IPSEC tun)--Router3--Host2
>
> When doing traceroute from Host1 to Host2 I see the following results:
>
> Tracing route to Host2 over a maximum of 30 hops
> 1 <10 ms 10 ms <10 ms Router1
> 2 <20 ms 20 ms <20 ms Host2
>
> The problem is that tun interfaces don't seen as hop counts.
> There are no some special configuration on tun interfaces.
>
> May be some of your faced with such problem early?
>
> Thanks
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/



More information about the cisco-nsp mailing list