Beruflich Dokumente
Kultur Dokumente
Note :
- Packets are not encrypted in GRE, but encapsulated. Using Ipsec with GRE will
encrypts the data
- Different from L2L VPN, GRE allows multicast and broadcast packets traverse
through the tunnel
- When routing protocols (EIGRP,OSPF) are necessary, GRE is your best bet.
- Protects the GRE tunnel with IPSec in transport mode to reduce the extensive
overhead
UNSECURED GRE
Create tunnel R1
Interface tunnel0
Ip address 172.16.0.1 255.255.255.0
Ip mtu 1400
Ip tcp adjust-mss 1360
Tunnel-source 1.1.1.10
Tunnel-destination 2.2.2.10
Reduce the mtu size for account of the extra overhead, unnecessary packet
fragmentation is kept to a minimum.
Create tunnel R2
Interface tunnel0
Ip address 172.16.0.2 255.255.255.0
Ip mtu 1400
Ip tcp adjuct-mss 1360
Tunnel-source 2.2.2.10
Tunnel-destionatio 1.1.1.10
SECURED GRE