cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
422
Views
0
Helpful
1
Replies

DMVPN - Spoke internet traffic via Hub

nsti_0682
Level 1
Level 1

I'm setting up DMVPN and want to send all traffic via the hub (RFC1918 & internet). I want to do this so that I can do content filtering in one central location as opposed to 60+. I must be missing something because when i ping from R1 (192.168.15.1) to R7 (7.7.7.7), although my NAT translation table looks correct I don't get replies. I've verified that the traffic is reaching R7 but in the packet captures, I see strange output, which is that somehow R6 (which represents my internet cloud) see's the Real IP (192.168.15.1). I will mention that i can ping R7 via R2 (192.168.24.2) with no issues. Also to simulate an ASA i'm doing IP Inspection on R3. See below for the diagram and screenshots.

1 Reply 1

trfinkenstadt
Level 1
Level 1

Hello,

 

  1. What's 3.3.3.6?  
  2. Is your DMVPN going from R5 to R4 with R7 simulating an internet site?  
  3. Does R1 to R2 work?
  4. Is a single connection from R4 to R3 (asa-like) that is both the DMVPN source interface and internet gateway?  a hairpin through R4 to the internet from R1/R5?

 

I suspect your problem is a configuration on 3.3.3.6 (R4?) but without the configuration/routing tables it's hard to tell.

 

best regards,

 

tim

Review Cisco Networking for a $25 gift card