DMVPN with loopback as source

From: backbone systems <backbone.systems_at_gmail.com>
Date: Tue, 22 Dec 2009 10:55:14 +0300

Hi,

I am trying to built a DMVPN tunnel bw R1-R2-R3 with R1 as HUB.
When i try to build the tunnel with tunnel source as loopback 0
.......the sh cry isa gives me the following error....

*Mar 1 01:43:57.359: ISAKMP:(0:116:SW:1): IPSec policy invalidated proposal
*Mar 1 01:43:57.363: ISAKMP:(0:116:SW:1): phase 2 SA policy not
acceptable! (local 200.0.0.1 remote 3.3.3.3)

though my lo0 is advertised to all the peers via RIP and i can
successfully ping it from all routers.

If i just change the source to my WAN(FR) interface ....the tunnel
works fine and i can successfully build the eigrp and ospf nei
relationships......

What could be wrong?

BB

Blogs and organic groups at http://www.ccie.net
Received on Tue Dec 22 2009 - 10:55:14 ART

This archive was generated by hypermail 2.2.0 : Sat Jan 02 2010 - 11:11:08 ART