04-26-2016 11:30 AM - edited 03-05-2019 03:54 AM
I'm creating tunnel interfaces to support up to a potential number of 2000 end point terminations. I have "heard" that there is an NHRP limitation of 254 per interface, but cannot find a specific reference. Is this a real and hard limit? Does it depend on the Cisco platform, the tunnel interface, the physical interface? Any reference would be much appreciated.
Thanks
04-26-2016 02:12 PM
I don't think I would be brave enough to load it up that hard on a single hub.
I've used iWAN with more than 254 spokes, but I don't think iWAN uses NHRP any more unless talking to an older IOS (not sure). This design guide shows how to build an iWAN configuration to support 2,000 spokes. You'll need an ASR1k. I notice they have used four tunnels each with a /23 (which is what I have done - and it works fine).
http://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Feb2016/CVD-IWANDesignGuide-FEB16.pdf
If you are using IPSec as well watch out for the maximum number of SA's that the hub router is using can handle (unless you are using an ASR 1k ...).
04-28-2016 05:00 PM
Thanks for the input Philip. I'm not too concerned with the 2000 number, these are LTE backup links and statistically, we expect only a maximum of 200 to be terminated at any give time. I'm more interested in the actual NHRP limit, per tunnel interface, and the source reference document(s) that specific the limit.
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide