I have a scenario with configuring an IPsec tunnel between two different global sites, using IPsec tunnels, one site using a Draytek Vigor 3300, the other using a Cisco router.
Both ISAkmp/ IPsec appear to be configured correctly, according to both routers; the front end on the Vigor, and the ‘sh crypto/isakmp’ commands on the Cisco.
I believe the tunnels are up both in SITE1 and the SITE2. The problem is, that as no tunnel interface can be defined ( and I can?t assign an IP address to it) on the Draytek router side1, I am unable to route between both sites.
SITE1 private (192.168.0.0) ? router public ? (SITE1 Public) ? INTERNET ? (SITE2 Public) public ? (10.2.0.0) SITE1 private
Basially using Cisco IPsec GRE tunnels, once the tunnels are configured correctly in a Cisco ONLY environment, configuring routing is simple.
However, on the Site1 side, although the tunnel is up, according to the router, I cannot route between either site, despite configuring static routes.
Does any body have any general comments here, on Cisco to non Cisco routing, or any other awkward combinations they have experienced?
Also, a silver bullet solution would be ideal ; )
If I find a solution in the meantime, I’ll post it.
-BH