DMVPN Phase 2 EIGRP - no split horizon and no next hop self on Hub OSPF - network broadcast type on hub, prio 255 on hub and prio 0 on spoke (i.e make the hub the DR by bumping up the priority and spokes not participate in elections by setting to 0)
Converting Phase2 to DMVPN Phase 3 EIGRP - remove no next hop self on hub, add nhrp redirect on hub, add nhrp shortcut on spoke OSPF - network point-to=multipoint on both hub and spoke, add nhrp redirect on hub, add nhrp shortcut on spoke Ensure ip cef is enabled (IOS default is on) sh adjacency tun 0 det - Handy command to check whats going on with the tunnel Recommended practice for the lab (divide and conquer approach) 1. First setup the DMVPN tunnel in GRE only mode / i.e without IPSec (if ASA in between punch a hole for gre any any). If tunnel comes up and your overlay routes (EIGRP/OSPF) show up then you have ensured tunnel config and routing protocols - physical end point routing and tunnel overlay routing functioning properly 2. Only after this would you want to apply IPSec using tunnel prototection ipsec profile. (if ASA in between punch a hole for isakmp and ipsec for specific end points and remove the hole for gre you introduced earlier) Regards - R Shenai
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
