Hi, On Wed, Jan 27, 2010 at 07:06:18PM +0100, Ivan Pepelnjak wrote: > If I understood the original question correctly, he's an MPLS > VPN customer running BGP with his Service Provider. Unless I'm > mistaken, it's somewhat hard to run IGP on top of that, unless you > build GRE or DMVPN tunnels over MPLS VPN first.
Oh. In that case I wasn't reading properly, I was assuming L2 MPLS VPN
links (ethernet over MPLS or similar), not L3 VPN.
Indeed, in that case it's better to use BGP for everything - but I'd
still use a single protocol both for the IPSEC and for the VPN links
instead of relying on EEM to react to "things" and change configs.
gert
--
USENET is *not* the non-clickable part of WWW!
//www.muc.de/~gert/
Gert Doering - Munich, Germany [email protected]
fax: +49-89-35655025 [email protected]
pgpbnqi3NnGMI.pgp
Description: PGP signature
_______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
