cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
381
Views
0
Helpful
1
Replies

EIGRP peering over VPN upon WAN failover

gregwoodson
Level 1
Level 1

Attached is the basic diagram of our scenario here.  EIGRP is fully deployed throughout the network.  If the link between corpcoresw01 and XO Router-Dallas goes down, it will bring up a VPN between the 2 firewalls (Cisco 5520's- IPSEC).  Once the VPN comes up- how will corpcoresw01 and dalcoreswp01 share their routes?  Does a GRE tunnel need to be established to bring up the peering relationship?  What is the best practice way to accomplish this?

Thanks
Greg

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

A GRE tunnel is a nice straight forward way of doing it.  Make sure you don't permit recursive routing to happen.  Make sure the tunnel endpoints are forced to only run via the IPSec tunnel (often easiest to use permanent static routes).

Review Cisco Networking for a $25 gift card