Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello!I'm currently going over the benefits of migrating from phase 2 to phase 3 for our DMVPN network. One of the issues with phase 2 is doing summarization at the hub for the other spoke networks. Currently, the spokes are summarizing their own net...
Hello everyone!So I'm running into some issues when trying to get remote AnyConnect users to hairpin. So we have servers that are out on the Internet and would only allow connections froms our HQ public subnet. What I want to have done, is have the r...
Hello all,I have a question regarding how a remote site should route traffic to the enterprise's public prefixes when it has a local Internet and MPLS connection. The two options are two have all traffic to public prefixes route over the Internet con...
I am currently trying to decide if when creating VPN filters, if I should just create a single one and apply it to the multiple VPN tunnels or if each VPN tunnel should have their own VPN filter. Creating a VPN filter for every VPN tunnel seems like ...
Hi Oliver!Looks like I'm headed in the right direction with your advice. I still can't get it to work though. What I have done is created a virtual-template and use loopback2 as the unnumbered ip, and configured "ip nat inside" on the virtual templat...
Hi Julio,I think I'm leaning towards creating a VPN filter for each IPsec L2L tunnel because I can name them to refer to what they are being used for. If I create a single VPN filter for all of the tunnels, it would be hard to keep track of of what e...