cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
487
Views
0
Helpful
2
Replies

IPsec idle timeout feature and EIGRP

bjornarsb
Level 4
Level 4

Hi,

I need the same option as in DDR.

EIGRP must not be the trigger nor keep the tunnel active.

Any ideas ?

Regards

bjornarsb

2 Replies 2

Richard Burts
Hall of Fame
Hall of Fame

Bjornarsb

I am not sure that there is a way to do what you are asking. The operation of DDR and of IPSec are a bit different where DDR has the concept of interesting traffic where non-interesting traffic can be transported over the DDR link if it is up but will not trigger the call. IPSec does not have the concept of interesting traffic and any traffic through the tunnel will help to keep the tunnel active and up. I do not see a way to send EIGRP through the IPSec tunnel without it potentially being a trigger.

Perhaps if you describe your requirements a bit more we might be able to find a solution. Why is it that you do not want EIGRP to be a trigger?

HTH

Rick

HTH

Rick

Hi,

We use UMTS/GPRS as backup, thats why we do not want the routing protocol to be the trigger.

Like in nhrp you have:

ip nhrp interest 100

access-list 100 deny eigrp any any

access-list 100 permit ip any any

regards /bjornarsb