DMVPN Phase 2
EIGRP - no split horizon and no next hop self on Hub
OSPF - network broadcast type on hub, prio 255 on hub and prio 0 on spoke
 (i.e make the hub the DR by bumping up the priority and spokes not
participate in elections by setting to 0)

Converting  Phase2 to DMVPN Phase 3
EIGRP - remove no next hop self on hub, add nhrp redirect on hub, add nhrp
shortcut on spoke
OSPF - network point-to=multipoint on both hub and spoke, add nhrp redirect
on hub, add nhrp shortcut on spoke

Ensure ip cef is enabled (IOS default is on)
sh adjacency tun 0 det - Handy command to check whats going on with the
tunnel

Recommended practice for the lab (divide and conquer approach)
1. First setup the DMVPN tunnel in  GRE only mode / i.e without IPSec (if
ASA in between punch a hole for gre any any).
If tunnel comes up and your overlay routes (EIGRP/OSPF) show up then you
have ensured tunnel config and routing protocols - physical end point
routing and  tunnel overlay routing functioning properly
2. Only after this would you want to apply IPSec using tunnel prototection
ipsec profile.  (if ASA in between punch a hole for isakmp and ipsec for
specific end points and remove the hole for gre you introduced earlier)


 Regards
- R Shenai
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to