<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ipsec(tunnelmode)+gre+eigr in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381981#M1059533</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The real question is not whether you are connected using a single physical interface at the central site. I have a customer who is currently using a single physical interface for about 90 GRE tunnels with no issue about split horizon. But these are traditional point to point GRE tunnels. If you connect to multiple remote locations with a multipoint GRE tunnel then there is an issue with EIGRP split horizon and you would need to turn off split horizon. If you do not disable split horizon the symptom is likely to be that all remotes can talk to the central site, the central site can talk to all remotes, but one remote will not be able to talk to other remotes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 31 Jan 2005 19:13:15 GMT</pubDate>
    <dc:creator>Richard Burts</dc:creator>
    <dc:date>2005-01-31T19:13:15Z</dc:date>
    <item>
      <title>ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381976#M1059524</link>
      <description>&lt;P&gt;is it possible to use ipsec(tunnelmode)+gre+eigrp at the sime time?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:52:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381976#M1059524</guid>
      <dc:creator>adaubenton</dc:creator>
      <dc:date>2020-02-21T07:52:06Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381977#M1059526</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is possible. In a customer network we are doing IPSec over GRE and running EIGRP. I have configured IPSec for both tunnel mode and for transport mode. Both of them worked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 14 Jan 2005 15:08:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381977#M1059526</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2005-01-14T15:08:21Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381978#M1059528</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you, in fact my configuration work well only  for 5 minutes.&lt;/P&gt;&lt;P&gt;my next step: CBWFQ+GTS &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bye&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Arnaud&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 14 Jan 2005 15:49:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381978#M1059528</guid>
      <dc:creator>adaubenton</dc:creator>
      <dc:date>2005-01-14T15:49:32Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381979#M1059529</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;we have about 50 Companies in the whole world connected via GRE over IPSec. A lot of the companies are meshed. So EIGRP can find the best way to the HQ in DE if we have Problems with the ISP. Additional we can use floating static routes to enable ISDN-Backup when Internet is down. It works fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards Rainer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jan 2005 12:28:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381979#M1059529</guid>
      <dc:creator>rhaeppeler</dc:creator>
      <dc:date>2005-01-21T12:28:40Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381980#M1059531</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;do you have any problem with splithorizon ?&lt;/P&gt;&lt;P&gt;On the central site, if you are connected via multi gre tunnels to other sites, using only one physical interface on the central site ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards Arno&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2005 17:14:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381980#M1059531</guid>
      <dc:creator>lemair_a</dc:creator>
      <dc:date>2005-01-31T17:14:54Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381981#M1059533</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The real question is not whether you are connected using a single physical interface at the central site. I have a customer who is currently using a single physical interface for about 90 GRE tunnels with no issue about split horizon. But these are traditional point to point GRE tunnels. If you connect to multiple remote locations with a multipoint GRE tunnel then there is an issue with EIGRP split horizon and you would need to turn off split horizon. If you do not disable split horizon the symptom is likely to be that all remotes can talk to the central site, the central site can talk to all remotes, but one remote will not be able to talk to other remotes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2005 19:13:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381981#M1059533</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2005-01-31T19:13:15Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381982#M1059535</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Arno,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No, we don't have a Problem with splithorizion because we have for each Company a own GRE-Tunnel (point-to-point) for the Routing-Protocol it's like a own Interface for each Branch. We don't use Multipoint GRE&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2005 06:27:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381982#M1059535</guid>
      <dc:creator>rhaeppeler</dc:creator>
      <dc:date>2005-02-01T06:27:51Z</dc:date>
    </item>
    <item>
      <title>Re: ipsec(tunnelmode)+gre+eigr</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381983#M1059538</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your answers Rainer and Rick, that was the point i wasn't sure about.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Arno&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2005 12:08:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-tunnelmode-gre-eigr/m-p/381983#M1059538</guid>
      <dc:creator>lemair_a</dc:creator>
      <dc:date>2005-02-01T12:08:04Z</dc:date>
    </item>
  </channel>
</rss>

