Looking to set up ADVPN with BGP & OSPF Hub and Spoke configuration? This ultimate guide breaks down the process step by step for easy implementation.
Пікірлер: 16
@staticroute5 ай бұрын
ADVPN is an enhancement to dialup VPNs that allows Spoke to Spoke VPNs to dynamically form on demand, therefore virtually achieving a full mesh VPN with just a single IPSec VPN configuration. The auto-discovery packets exchange between sender (Hub) and receiver (Spokes) make this possible through shortcut messages! the biggest advantage is simplified routing whether you choose to use BGP or OSPF, the config remains relatively simple! Enjoy!
@MyGutFeeling_26 күн бұрын
Fantastic video. I was really struggling getting this to work until now.
@juan53924 ай бұрын
Please, make more videos!. Your explanations are very good 😭
@staticroute4 ай бұрын
@@juan5392 most certainly..! Thank you.
@rjnasr80785 ай бұрын
Hey .. Upgrading to Eve-NG .. nice to see.
@staticroute5 ай бұрын
@@rjnasr8078 😬 hey bro, to be honest, I’m not yet loyal to either one of them, but I want to give EVE a chance for a while…
@rjnasr80785 ай бұрын
@@staticroute I had a lot of issues with GNS3 and it was very time consuming. So far eve-ng seems to be smoother.
@staticroute5 ай бұрын
I noticed the same thing but both on EVE and GNS3, in my case configs that works one moment stop working for no reason, turns out it was related to device license status, if it turns to ‘invalid’, then all hell breaks loose…be on the lookout for that
@rjnasr80784 ай бұрын
@@staticroute I thought I sent out a response to this ages ago. Yes I also had some weird stuff happening and have to start from scratch. Hope you're well.
@GavinScruton3 ай бұрын
This is a great video! Thank you very much! What router/node did you use for the "Internet" as I am trying to create a lab like this but battling to create the "false" internet. Thanks again!
@staticroute3 ай бұрын
Hey Gavin, it’s just 3 Cisco routers sharing routes using OSPF between themselves, the other one at the bottom is Out of band management…basically my home network so I can connect using GUI, going forward, I’ll zip and share all configs to the labs
@GavinScruton3 ай бұрын
@@staticroute Thank you very much!
@doom9865 ай бұрын
Great video and helped me alot setting things up. Question: can you do this but bgp on loopback interface so there would be no need to configure tunnel interface. Some Fortinet guides seem to suggest using loopback interfaces..?
@staticroute5 ай бұрын
That should be possible, when you enter into "config neighbour" BGP hierarchy, you are able to specify interface to associate with BGP as well as update source. I haven't done this type of deployment myself and I won't be able to lab it up anytime soon because I deleted this lab...annoying Fortinet license expiry issue, please give it a shot and let me know...
@doom9865 ай бұрын
Yeah I think I'll try to lab it at somepoint. Maybe it's more for larger networks/mssp's and not really an issue for us. I was just thinking that since i'm doing greenfield advpn/bgp setup would be better to do it with loopback from the start and make it more futureproof. Also I was looking at the 7.4 docs and there are some new features like active dynamic BGP neighbor triggered by ADVPN shortcut. I hope you can do more videos in the future👍👍
@Rejo-ni3hz5 ай бұрын
@staticroute can you do DLP policy and acme certificate policy