DVPN Configuration
Example for Spoke-Hub
Networks
[Spoke3-Tunnel2] ipsec profile vamp
[Spoke3-Tunnel2] quit
Configure OSPF
■
# Configure OSPF for the public network.
[Spoke3] ospf 100
[Spoke3-ospf-100] area 0
[Spoke3-ospf-100-area-0.0.0.0] network 192.168.1.5 0.0.0.255
[Spoke3-ospf-100-area-0.0.0.0] quit
# Configure OSPF for the private network.
[Spoke3] ospf 200
[Spoke3-ospf-200] area 0
[Spoke3-ospf-200-area-0.0.0.0] network 10.0.2.3 0.0.0.255
[Spoke3-ospf-200-area-0.0.0.0] quit
Network requirements
In the Spoke-Hub networks, data is forwarded along spoke-hub tunnels. The
■
primary and secondary VAM servers (the main and backup servers in the
following figure) manage the nodes and maintain configuration information.
The AAA server is in charge of authentication and accounting of VAM clients.
The two hubs in redundancy are for data forwarding and routing information
exchange.
Permanent tunnels are established between spokes and Hubs.
■
DVPN Configuration Example
1581