[c-nsp] default routing over ipsec
omar parihuana
omar.parihuana at gmail.com
Tue Aug 28 19:07:31 EDT 2007
All is possible with IPSec/GRE... after GRE tunnel is up, the issue is only
routing...
Rgds.
On 8/28/07, Gaurav Sabharwal <gaurav at inwire.net> wrote:
>
> on 08/28/2007 04:51 AM matthew zeier said the following:
> > I have a remote office in China that wants to split traffic such that
> > domestic routes go out in the clear to the provider and all other
> > traffic (or essentially, the default route) goes out across an IPSEC
> tunnel.
> >
> > I'm not clear on how to make the latter work - do I specific a default
> > route & next hop? Or does my crypto map need to include 0.0.0.0/0 ?
> One option would be to use a VTI and PBR.
>
> Cheers,
> - Gaurav
> _______________________________________________
> cisco-nsp mailing list cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>
--
Omar E.P.T
-----------------
Certified Networking Professionals make better Connections!
More information about the cisco-nsp
mailing list