Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

OSPF Question 1

Status
Not open for further replies.

jrmann1999

Technical User
Sep 12, 2006
32
0
0
US
Can OSPF be setup to redistribute IPSEC routes?

I have a 2600 that terminates 20-25 tunnels. IP addresses behind each are 192.168.1.0, 192.168.2.0, 3.0, 4.0, etc etc.

I'd like to use OSPF to advertise these to my ASA that sits on the same network as the 2600 so I don't have to static map them.

I've got the two setup to share OSPF, and they share both static and connected routes already, just need to know if there's a "redistribute XXX" command that can be used for IPSEC on the 2600.

Thanks.
 
I am confused as to the topology, but the routes should be appear to be connected so you should be able to "redistributed connected." However, why dont you just put one static route in the asa.


ip route inside 192.168.1.0 255.255.224.0 x.x.x.x
 
If I issue

sh ip route

On the 2600, I get only routes I have defined in the config, none of the VPN tunnels show up. Those static routes to redistribute.

I've never considered adding a ranged route, just curious if this was even possible.
 
probably not since I have no clue what that is.
 
excellent! reverse-route works exactly as I wanted.
 
jrmann1999...I would give brian a star---this was a helpful post. Just my 2 cents...

Burt
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top