08-13-2025 07:05 PM
I'm trying to lab Multi-Region Fabric. But having an issue with my routing.
Before creating my tunnel interfaces and IPSEC encapsulation, everything works as expected in regards to my routing. Which is completely BGP. From the router at the 15201 site, as well as the BizNet and PubInet routers, I can ping inside my core area, etc. No issues. But once I create my tunnels and the sdwan encapsulation configurations, things change.
From the Router at the 15201 site, I can ping the inside interfaces of more core routers, but can not reach the rtr-Core-Biznet and rtr-Core-PubInet routers inside the core. I've verified that icmp, dns, bgp etc are allowed under the interfaces within the SDWAN configuration portion of my config.
I'm learning, so it's possible I don't have something configured correctly But to have the router from outside my core area to inside my core area working up until I apply IPSEC, etc has me puzzled.
08-14-2025 10:06 AM
Hello @terryw1964
15201 site reach the BR-REG routers over the overlay IPs ?
08-14-2025 02:22 PM
Run this
Debug packet-trace condition source-ip <> bidirectional vpn0
Debug packet-trace start
Show packet-tracer stats <<- share this
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide