Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Nik_Bloemers
Advisor
Advisor
Jump to solution

Route-based VPN Proxy ID 0.0.0.0/0?

Hi CheckMates,

Am I correct in understanding that for route-based VPN with unnumbered interfaces the only available option is universal tunnel, so proxy ID of 0.0.0.0/0?

If not, can anyone tell me how you're supposed to get the proxy ID right?
Kind regards,

Nik Bloemers

 

0 Kudos
1 Solution

Accepted Solutions
Timothy_Hall
Legend Legend
Legend

Correct, a route-based VPN tunnel has to be universal since we do not know ahead of time what traffic IP routing will dump into the VPN tunnel; set one tunnel per gateway pair in the VPN Community object to get 0.0.0.0/0's.  With a domain-based VPN we do know exactly what IP addresses will appear in the tunnel based on the static VPN domain definitions.

Attend my online "Be your Own TAC: Part Deux" CheckMates event
March 27th with sessions for both the EMEA and Americas time zones

View solution in original post

1 Reply
Timothy_Hall
Legend Legend
Legend

Correct, a route-based VPN tunnel has to be universal since we do not know ahead of time what traffic IP routing will dump into the VPN tunnel; set one tunnel per gateway pair in the VPN Community object to get 0.0.0.0/0's.  With a domain-based VPN we do know exactly what IP addresses will appear in the tunnel based on the static VPN domain definitions.

Attend my online "Be your Own TAC: Part Deux" CheckMates event
March 27th with sessions for both the EMEA and Americas time zones

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 18 Mar 2025 @ 09:30 AM (EET)

    CheckMates Live Greece

    Tue 25 Mar 2025 @ 12:00 PM (MDT)

    Salt Lake City: CPX 2025 Recap

    Tue 08 Apr 2025 @ 12:00 PM (MDT)

    Denver: CPX 2025 Recap
    CheckMates Events