Chapter8 Site-to-Site VPN
Create Site to Site VPN
8-54
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Do split tunnelingSplit tunneling allows traffic that is destined for the
network specified in the IP Address and Network Mask fields to be en crypted
and routed through the tunnel interface. All other traffic will not be
encrypted. When this option is selected, SDM creates a static route to the
network, using the IP address and network mask.
The following example assumes that the network address
10.2.0.0/255.255.0.0 was entered in the destination address fields:
The following example assumes that the network address
10.2.0.0/255.255.0.0 was entered in the destination address fields:
ip route 10.2.0.0 255.255.0.0 Tunnel0
When split tunneling is selected, the IP Address and Subnet Mask fields will
appear, requiring you to enter the IP Address and Subnet Mask of the
destination peer. You must ensure that the destination IP address entered in
the Tunnel Destination field of the GRE Tunnel Information window is
reachable. If it is not reachable, no tunnel will be established.
IP Address
Enabled with split tunneling. Enter the IP address of the network at the other end
of the tunnel. SDM will create a static route entry for the packets with a
destination address in that network. This field is disabled when Tunnel all traffic
is selected.
You must ensure that the IP address entered in this field is reachable before you
configure this option. If it is not reachable, no tunnel will be established.
Network Mask
Enabled with split tunneling. Enter the network mask used on the network at the
other end of the tunnel. This field is disabled when Tunnel all traffic is selected.
Select Routing Protocol
Use this window to specify how other networks behind your router are advertised
to the other routers in the network. Select one of the following:
EIGRPExtended Interior Gateway Routing Protocol.
OSPFOpen Shortest Path First.