Answer the question
In order to leave comments, you need to log in
What are the problems with OSPF over GRE?
So, we have three virtual FreeBSDs, two of them connected by a GRE tunnel to the 10.0.0.0/30 network via external interfaces (sorry for the scheme):
lan1 -- (gre0 10.0.0.1 | em0 1.1.1.2) server1 -- gateway -- server2 (em0 2.2.2.2 | gre0 10.0.0.2) -- lan2
The "servers" have gateway_enable=YES, frr_enable=YES and running zebra with ospfd.
If all three machines are made routers and raised on real OSPF interfaces, routing works perfectly, hellos go every 10 seconds, neighbors are seen, the connectivity is what it should be and everything is pinged from everywhere.
If we remove the dynamics from the gateway, connect the servers with a GRE tunnel, configure the IPsec transport mode on the external interfaces and run OSPF through the tunnel (I really want such a scheme in production), then the magic begins:
Answer the question
In order to leave comments, you need to log in
Thanks to a friend from the opennet.ru forum, he directed me to the right path: since redistribute connected was enabled, the "external" network through which the tunnel worked was also given. In doing so, he turned himself in. Removed this network from the announcement - everything went like clockwork.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question