Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
e016012e-c965-4
Participant

Inter VPN Routing

I'm working in a company where we are using a lot of S2S VPNs,

I follow some SKs but didn' found a real solution to my problem, basically :

we are routing traffic between 2 sites with VPNs  (we are the HUB:H) 

 

S1-H-S2  (S: Spoke)

 

S1 : domain based vpn

S2 : Route Based vpn

traffic from S2==>H==>S1 encrypted fwd properly on S1 vpn (no problem)

traffic from S1==>H==>S2 decrypted from S1 to H but not encrypted through S2

 

try to follow sk116097/sk109340 by adding dst-ip/nated ip on S2 GW doesn't help.

 

Anyone have an idea/experience same issues.

Thanks in advance for any help

5 Replies
_Val_
Admin
Admin

Please do not post in French group in English. Use General Topics instead. Thank you

0 Kudos
PhoneBoy
Admin
Admin

Have you implemented what's described in this SK?

Mixing Route Based VPN with Domain Based VPN on the same gateway 

e016012e-c965-4
Participant

hello Dameon Welch-Abernathy‌,
thansk for this SK, but i already check it before bit doesn't apply to my case:

   1.I'm not having/encountering subnets overlapping problem.

   2.I have different communities for my two remote gateways(above:  S1/S2 )

to summarize :
My Route Base traffic isn't matching Domain Based VPN for Source and Destination.

0 Kudos
PhoneBoy
Admin
Admin

Have you opened a TAC case on this?

0 Kudos
e016012e-c965-4
Participant

We have to make a support renewal, not yet done.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events