cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
683
Views
0
Helpful
2
Replies

GRE Tunnel not stable

Dear All,

I have a cisco 2900 series IOS 15.0(1)M acting as a DMVPN Spoke using IPSEC.

Suddenly, last the dmvpn tunnel went down and till now it is stuck on IKE state know the crypta isakmp sa is UP. I did everything I know to solve it but in vain.

I have created a new dmvpn with no encryption and everything was good, but when applying the prtoction profile, the tunnel goes down.

I applied the same ipsec profile on a GRE-Tunnel and it was working as it should until i faced some problems earlier today.

When the tunnel destination is unreachable, the line protocol goes down and wont get back up without a shut/no shutdown operation.

 

I would really appreciate some help.

 

  Thank you in advance for your time.

1 Accepted Solution

Accepted Solutions

If the tunnel is coming up means that your configs are good.

Check the following:
- check timers mismatch
- share the debugs from the hub and spoke when the tunnel is dead and
trying to establish
- check if your provider is blocking encrypted traffic (I know they usually
they do this in MENA region)

View solution in original post

2 Replies 2

If the tunnel is coming up means that your configs are good.

Check the following:
- check timers mismatch
- share the debugs from the hub and spoke when the tunnel is dead and
trying to establish
- check if your provider is blocking encrypted traffic (I know they usually
they do this in MENA region)

Dear Mohammad,
Thank you for your quick reply.
Kindly note that below:
1-No timers are set on the tunnel from both sides
2-Will get the debug file asap
3- Will contact the ISP to know more about any blocked traffic.