cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
477
Views
0
Helpful
1
Replies

DMVPN Sites and Site to Site - Same Hub Routing

adamtodd16
Level 3
Level 3

I have approximately 10 DMVPN and 30 Site to Site VPN tunnels reminated on the same 2951 Hub. The DMVPN sites can reach each other over EIGRP, but cannot reach the locations terminated as site to site. Wondering what is needed to get this part up and running.

1 Reply 1

nkarthikeyan
Level 7
Level 7

Hi Adam,

It is quite difficult scenario. But let try if this helps.

Have you added the DMVPN source address subnet in the crypto_acl of site to site tunnel...... do you see intresting traffic gets through L2L tunnel from DMVPN subnets?

 

say you have dmvpn spoke with 192.168.10.0/24 as source subnet and remote end site to site tunnel  as 192.168.20.0/24 and your hub has internal lan as 192.168.30.0/24... so for site to site.... you already have the crypto acl between 192.168.10.0/24 & 192.168.30.0/24, so you need to add 192.168.20.0/24 to it.... also no-nat configurations also needed to be added with dmvpn spoke LAN subnet.....

I am not sure if this works.... have you tried with all possible things?

 

Regards

Karthik

 

Regards

Karthik