02-24-2017 11:30 AM
I got a report from either NetScout or eHealth that shows over 10% of our bandwidth usage is from IPsec traffic. The only IPsec configuration I am aware of is between two site DS3 routers for a GRE tunnel. In an Enterprise environment, is there IPsec traffic that I am unaware of? One theory from the boss is that when a client authenticates the domain controller talk is in an IPsec tunnel. I did a couple of "show crypto IPsec" commands in our Core router and it shows nothing exists including the sa. We have a 5510 for VPN clients with 2 licenses. Wouldn't that use IPsec also? I am so confused.
Solved! Go to Solution.
02-26-2017 01:09 PM
Can users create user to site IPSec tunnels directly out to the Internet?
How do you know it is not your GRE over IPSec tunnel?
Have you by chance got an Active Directory policy configured requiring IPSec between machines?
02-26-2017 01:09 PM
Can users create user to site IPSec tunnels directly out to the Internet?
How do you know it is not your GRE over IPSec tunnel?
Have you by chance got an Active Directory policy configured requiring IPSec between machines?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide