Reply
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
Hub and Spoke to fully meshed VPN
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2011-10-27
10:24 AM
2011-10-27
10:24 AM
Hub and Spoke to fully meshed VPN
Greetings, I have 4 locations using FVS338s in a hub and spoke VPN configuration. I want to change from hub and spoke to a fully connected VPN network topology. Is the FVS338 smart enough to perfom least cost routing? Will this work?
Thanks in advance.
Message 1 of 4
Labels:
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2011-10-27
10:46 AM
2011-10-27
10:46 AM
Re: Hub and Spoke to fully meshed VPN
There is no LCR in an IPSec VPN. There is one route between the two endpoints (no matter if it is full mesh or hub & spoke).
Since you have a single WAN router (FVS338) you can only use a single ISP connection. You cannot do LCR.
I think you might be using the wrong term (LCR).
Message 2 of 4
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2011-10-28
06:28 AM
2011-10-28
06:28 AM
Re: Hub and Spoke to fully meshed VPN
Adit, I plan on adding additional IPSEC tunnels to / from each router. A total of 6 for 4 nodes. My question focused on the ability of the FVS338 to route packets correctly. In mytesting last night, I found my configuration works as expected.
Thanks
Thanks
Message 3 of 4
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2011-10-28
09:13 AM
2011-10-28
09:13 AM
Re: Hub and Spoke to fully meshed VPN
You use the same IKE policy and add VPN policies to it. One for each subnet, IP range, or individual IP that you want available between the sites.
You should be fine.
Message 4 of 4