cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
767
Views
0
Helpful
2
Replies

EIGRP Unicast Routing on ASA

jason.edelman
Level 1
Level 1

Has anyone used the EIGRP neighbor command on the ASA to enable unicast hellos and dynamic routing between two ASAs over a site to site VPN tunnel?

I'd like to see if it is possible to eliminate an external router needed to build a GRE tunnel and instead accomplish the same thing just by using ASAs.

Thanks!

Jay

2 Replies 2

andrew.prince
Level 10
Level 10

Jay,

Never used it - but in theory it's possible only when you specific the neighbor of the remote ASA EIGRP.

You would also have to configure a router-id in the EGIRP to make sure all EIGRP transmission is unicast - otherwise the IPSEC will drop the multicast.

HTH>

jasonfmic
Level 1
Level 1

Jay,

Did you end up configuring this? I'm looking at it and unlike the static 'neighbor' command for ospf, eigrp requires that the neighbor be on the same subnet and the outbound interface... that would seem to make this command not very useful at all as you cannot use it to unicast hellos over the internet.

I wonder why that requirement exists for eigrp.. I'm tempted to set up an outside NAT on a router in between to see if I can get it working..

Jason

Review Cisco Networking for a $25 gift card