cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
970
Views
5
Helpful
2
Replies

ECMP -- 4 times (and more) IPSEC VPN Tunnels to Umbrella SIG Gateway

csedlmeier
Level 1
Level 1

Dear all.

 

I have a customer that want to connect to Umbrella SIG Gateway with IPsec Tunnels.

Because there will be around 1-2GB Traffice we need to configure 4-8 Tunnels (at moment per tunnel 250MBit later 500MBit)

 

I found following information at Umbrella site for basics Network Tunnel Configuration (umbrella.com)

Here are an example for ISR configuration Manual: Cisco ISR (umbrella.com)

 

In my opinion, if I configure more than one default routes that point to different tunnels. The system should to automatically ECMP between the VPN tunnels.

 

VPN Tunnels to Umbrella SIG are up and running, but I need to check if ECMP is working as expected, and how flows distributed through different tunnels ?

 

Can some tell me what commands I should use to check if ECMP is working ?

 

Thanks in advance.

Christian

2 Replies 2

I think it asymmetric traffic, where if traffic go out tunnel1 and return from tunnel2 this asymmetric and packet drop. 
as I think.

Hello,

 

which ISR router model do you have ? Does it support the:

 

platform loadbalance max-paths 8

 

command ?

 

You can verify the ECMP with the command:

 

show ip cef x.x.x.x detail

 

where 'x.x.x.x' is a destination network...

 

 

Review Cisco Networking for a $25 gift card