Difference between revisions of "DMVPN configuration"

From Teltonika Networks Wiki
Line 18: Line 18:
 
==Spoke configuration==
 
==Spoke configuration==
  
This section contains information on how to configure DMVPN <b>Spokes</b>. Particularly,  
+
This section contains information on how to configure DMVPN <b>Spokes</b>. Firstly, we'll configure the DMVPN instance to make to the connection possible. Then we'll the <b>Border Gateway Protocol</b> (<b>BGP</b>) parameters as our dynamic routing solution.
 +
 
 +
<b>Note</b>: at the moment, BGP is the only stable dynamic routing solution that can work with DMVPNs.
  
 
===Spoke configuration: DMVPN===
 
===Spoke configuration: DMVPN===

Revision as of 13:45, 1 April 2019

Introduction

Dynamic Multipoint VPN (DMVPN) is a dynamic tunneling form of a virtual private network (VPN) supported on Cisco routers. This article contains step-by-step instructions on how to configure DMVPN between a "Hub" and two "Spokes" using RUT9xx routers.

Prerequisites and overview

You will need:

  • At least two RUT9xx routers
  • A PC to configure the routers

Configuration scheme:

Dmvpn overview.png

Spoke configuration

This section contains information on how to configure DMVPN Spokes. Firstly, we'll configure the DMVPN instance to make to the connection possible. Then we'll the Border Gateway Protocol (BGP) parameters as our dynamic routing solution.

Note: at the moment, BGP is the only stable dynamic routing solution that can work with DMVPNs.

Spoke configuration: DMVPN


Navigate to the Services → VPN → DMVPN page and follow the instructions provided below.

Step 1: create a new DMVPN instance:
Dmvpn 1 v1.png


Step 2: configure DMVPN parameters:
Dmvpn 2 1 v1.png


Step 3: configure GRE parameters:
Dmvpn 2 2 v1.png


Step 4: configure IPsec parameters:
Dmvpn 2 3 v1.png


Step 5: configure NHRP parameters or leave default values:
Dmvpn 2 4 v1.png


Step 6: save changes


Repeat this on different routers as many times as the number of Spokes that you need. Remember that other Spokes will have different LAN, WAN and GRE IP addresses.

Spoke configuration: BGP


Navigate to the Network → Routing → Dynamic Routes → BGP Protocol page and follow the instructions provided below.

Step 1: enable BGP:
Dmvpn 5 1 v1.png


Step 2: configure BGP instance:
Dmvpn 2 1 v1.png


Step 3: configure BGP peer:
Dmvpn 2 2 v1.png


Step 4: save changes

Hub configuration

Hub configuration: DMVPN


Navigate to the Services → VPN → DMVPN page and follow the instructions provided below.

Step 1: create a new DMVPN instance:
Dmvpn 2 0 v1.png


Step 2: configure DMVPN parameters:
Dmvpn 3 1 v1.png


Step 3: configure GRE parameters:
Dmvpn 3 2 v1.png


Step 4: configure IPsec parameters:
Dmvpn 3 3 v1.png


Step 5: configure NHRP parameters or leave default values:
Dmvpn 3 4 v1.png


Step 6: save changes

Hub configuration: BGP


Navigate to the Network → Routing → Dynamic Routes → BGP Protocol page and follow the instructions provided below.

Step 1: enable BGP:
Dmvpn 4 1 v1.png


Step 2: configure BGP instance:
Dmvpn 4 2 v1.png


Step 3: configure BGP peer group:
Dmvpn 4 3 v1.png


Step 4: save changes