Re: Security Question - OT

From: swap m <ccie19804_at_gmail.com>
Date: Sun, 27 Jun 2010 11:28:00 +0400

Yes you can very well do that. Static VTI, Dynamic VTI, Crypto-map
based VPN, DMVPN, GETVPN, RAVPN all can run via the same physical
interface.

Swap
#19804 x2

On Sun, Jun 27, 2010 at 1:53 AM, Santiago Enciso
<santiago.enciso_at_gmail.com> wrote:
> Sadiq, Thanks for your reply
>
>
> On Jun 26, 2010, at 5:51 PM, Sadiq Yakasai wrote:
>
>> Hi Santiago,
>>
>> Well, when you do VTI, you are essentially not pegging that VPN to
>> any physical interface, right? Even though you can unnumber the VTI
>> off a physical interface. So that means your interface is free to
>> take on a crypto-map.
>>
>> All in theory, I have not specifically tested it though.. so there
>> may be some interactive caveat there.
>>
>> Sadiq
>>
>>
>>
>> On Sat, Jun 26, 2010 at 10:34 PM, Santiago Enciso <santiago.enciso_at_gmail.com
>> > wrote:
>> Hi Guys out there, this is an OT question.
>> Can I configure Dynamic IPsec VTIs and lan-to-lan ipsec tunnels
>> (cryoto map) in the same interface?
>>
>> Thanks for your help.
>>
>>
>>
>>
>> Santiago Enciso Pusineri
>>
>>
>> Blogs and organic groups at http://www.ccie.net
>>
>> _______________________________________________________________________
>> Subscription information may be found at:http://www.groupstudy.com/
>> list/CCIELab.html
>>
>>
>>
>>
>>
>>
>>
>>
>>
>>
>> --
>> CCIE #19963
>
>
> Santiago Enciso Pusineri
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Sun Jun 27 2010 - 11:28:00 ART

This archive was generated by hypermail 2.2.0 : Sun Aug 01 2010 - 09:11:38 ART