Re: OT: DMVPN

From: Tsuyoshi (uchida_tsuyoshi2000@yahoo.co.jp)
Date: Mon Mar 20 2006 - 12:54:40 GMT-3


Hi, Chris,

Since EIGRP use multicast for neighbor associating,
I think you should map muluticast to hub on spoke.

#spoke
interface t0
 ip nhrp map multicast 50.50.50.2

THT
 --
 Tsuyoshi

On Mon, 20 Mar 2006 08:19:36 -0500
"Chris Broadway" <midatlanticnet@gmail.com> wrote:

> All,
>
> I switched the hub location in the DMVPN topology and I am still seeing the
> same issue. The spokes see the hub as an EIGRP neighbor that is up but the
> hub doesn't see the spokes as an EIGRP neighbor at all. How are the spokes
> seeing the hub up but not vice versa:
>
>
>
> *Spokes*
>
> 2821_CE_A#sh ip eigrp neighbors
>
> IP-EIGRP neighbors for process 1
>
> H Address Interface Hold Uptime SRTT RTO Q Seq
>
> (sec) (ms) Cnt Num
>
> 0 50.50.50.2 Tu0 12 00:00:40 1 5000 1 0
>
>
>
> 2610XM_CE_C#sh ip eigrp neighbors
>
> IP-EIGRP neighbors for process 1
>
> H Address Interface Hold Uptime SRTT RTO Q Seq
>
> (sec) (ms) Cnt Num
>
> 0 50.50.50.2 Tu0 14 00:00:42 1 5000 1 0
>
>
>
>
>
>
>
> *Hub*
>
> 2610XM_CE_B#sh ip eigrp neighbors
>
> IP-EIGRP neighbors for process 1
>
> 2610XM_CE_B#
>
>
>
>
>
>
>
>
>
> Also, The spokes are bouncing the EIGRP adjacencies still.Any clue? Here
> is one spoke and the hub partial configs:
>
>
> *Spoke*
>
> crypto isakmp policy 1
>
> authentication pre-share
>
> crypto isakmp key cisco47 address 0.0.0.0 0.0.0.0
>
> !
>
> !
>
> crypto ipsec transform-set trans2 esp-des esp-md5-hmac
>
> !
>
> crypto ipsec profile vpnprof
>
> set transform-set trans2
>
> !
>
> !
>
> !
>
> !
>
> !
>
> interface Tunnel0
>
> bandwidth 1000
>
> ip address 50.50.50.1 255.255.255.0
>
> no ip redirects
>
> ip mtu 1416
>
> ip nhrp authentication donttell
>
> ip nhrp map 50.50.50.2 10.10.8.2
>
> ip nhrp network-id 99
>
> ip nhrp holdtime 300
>
> ip nhrp nhs 50.50.50.2
>
> delay 1000
>
> tunnel source GigabitEthernet0/1
>
> tunnel mode gre multipoint
>
> tunnel key 100000
>
> tunnel protection ipsec profile vpnprof
>
>
>
>
>
> 2821_CE_A#sh run | b router eigrp
>
> router eigrp 1
>
> network 9.9.9.9 0.0.0.0
>
> network 50.50.50.0 0.0.0.255
>
> no auto-summary
>
> !
>
> ip classless
>
> ip route 10.10.0.0 255.255.0.0 10.10.5.1
>
>
>
>
>
>
>
>
>
>
>
> *Hub*
>
> !
>
> crypto isakmp policy 1
>
> authentication pre-share
>
> crypto isakmp key cisco47 address 0.0.0.0 0.0.0.0
>
> !
>
> !
>
> crypto ipsec transform-set trans2 esp-des esp-md5-hmac
>
> !
>
> crypto ipsec profile vpnprof
>
> set transform-set trans2
>
> !
>
> !
>
> !
>
> !
>
> !
>
> interface Tunnel0
>
> bandwidth 1000
>
> ip address 50.50.50.2 255.255.255.0
>
> no ip redirects
>
> ip mtu 1416
>
> no ip next-hop-self eigrp 1
>
> ip nhrp authentication donttell
>
> ip nhrp map multicast dynamic
>
> ip nhrp network-id 99
>
> ip nhrp holdtime 300
>
> no ip split-horizon eigrp 1
>
> delay 1000
>
> tunnel source FastEthernet0/0
>
> tunnel mode gre multipoint
>
> tunnel key 100000
>
> tunnel protection ipsec profile vpnprof
>
>
>
>
>
>
>
>
>
> 2610XM_CE_B#sh run | b router eigrp 1
>
> router eigrp 1
>
> network 12.12.12.12 0.0.0.0
>
> network 50.50.50.0 0.0.0.255
>
> no auto-summary
>
> !
>
> ip classless
>
> ip route 10.10.0.0 255.255.0.0 10.10.8.1
>
>
>
> -Chris
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html

 --
 Tsuyoshi

--------------------- Original Message Ends --------------------

--------------------------------------
Celebrate Yahoo! JAPAN 10th Anniversary
http://pr.mail.yahoo.co.jp/10thann/



This archive was generated by hypermail 2.1.4 : Sat Apr 01 2006 - 10:07:39 GMT-3