[c-nsp] default routing over ipsec

omar parihuana omar.parihuana at gmail.com
Tue Aug 28 19:07:31 EDT 2007


All is possible with IPSec/GRE... after GRE tunnel is up, the issue is only
routing...

Rgds.


On 8/28/07, Gaurav Sabharwal <gaurav at inwire.net> wrote:
>
> on 08/28/2007 04:51 AM matthew zeier said the following:
> > I have a remote office in China that wants to split traffic such that
> > domestic routes go out in the clear to the provider and all other
> > traffic (or essentially, the default route) goes out across an IPSEC
> tunnel.
> >
> > I'm not clear on how to make the latter work - do I specific a default
> > route & next hop?  Or does my crypto map need to include 0.0.0.0/0 ?
> One option would be to use a VTI and PBR.
>
> Cheers,
> - Gaurav
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>



-- 
Omar E.P.T
-----------------
Certified Networking Professionals make better Connections!


More information about the cisco-nsp mailing list