09-19-2020 05:55 AM - edited 09-19-2020 06:11 AM
Hi dears,
we have production environment where we have deployed cool technology SDWAN (it indeed cool).
09-19-2020 09:24 AM
This is one of reasons I would personally prefer good old BGP MPLS (over DMVPN if encryption is required) which does not have such strict limitation.
09-19-2020 12:50 PM
Even after creating this topic , I have played a bit. And found solution.
Solution is simple, not to use any tloc-action (which results strict tloc-action),but in TLOC list add all TLOCs (both intermediate and ultimate destination). Preference will be based on TLOC preference value which is sent while route is advertised.
Sorry, SDWAN, you indeed better than DMVPN
Kindly ask to moderators not delete topic, may be it will be useful for someone else.
09-21-2020 01:50 AM
Hi Kanan,
Sorry I've noticed your post too late. Indeed "set tloc-list" is an option here for your task. Just want to ask you to be careful with "set tloc-list", typical pitfall is also described in our SD-WAN troubleshooting tech notes: https://www.cisco.com/c/en/us/support/docs/routers/sd-wan/214502-inappropriate-usage-of-policy-action-se.html
09-21-2020 02:07 AM
Hi ekhabaro,
thank you for your comment. Kindly ask to re-read the topic. I already described that tloc-action with backup will not work due to different colors from source to intermediate and from intermediate to ultimate nodes.
Link provided by you describes another case where both devices announce route. In our case only one site announces route.
Btw, I already shared solution I found.
Regards,
09-21-2020 11:41 AM
Hi Kanan, yes I understand, I was rather referring to the following:
> but in TLOC list add all TLOCs (both intermediate and ultimate destination)
I haven't seen your policy, just guessing, but "set tloc-list" usually considered dangerous if improperly applied, this is the key message.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide