Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > Cisco > IP CEF and VPNs.

Reply
Thread Tools

IP CEF and VPNs.

 
 
AM
Guest
Posts: n/a
 
      04-11-2006
Hello,

I built a VPN like other dozens I did between a PIX and Cisco 837/877.
For one of them users behind reported that speed was very good but the VPN. I noticed that as I compared the access time
using the public IP and the loopback interface through the VPN. The first access didn't freeze the router while the
second made the CPU load go to the maximum.
I sorted the problem out disabling the CEF feature. But CEF is enabled on all the other router which don't bring me
troubles.

Does anyone know the reason why CEF could be an obstacle to speed through the VPN?

Thanks a lot?

Alex.
 
Reply With Quote
 
 
 
 
opensource
Guest
Posts: n/a
 
      04-11-2006

Cef has always been a problem with VPN tunnels. I've had cases where no
traffic would flow or it would be sporadic like only http would flow.
Either way, I made it a habit of setting the following on an interface
with a crypto map when I run into weird vpn issues.

No ip route-cache
no ip mroute-cache


--
opensource
------------------------------------------------------------------------
opensource's Profile: http://www.CertificationChat.com/member.php?userid=67
View this thread: http://www.CertificationChat.com/showthread.php?t=8035

 
Reply With Quote
 
 
 
 
ciscodagama@gmail.com
Guest
Posts: n/a
 
      04-14-2006
Disabling CEF to isolate and debug the problem is a good idea. But
disabling it permanently is usually not a good idea because that might
cause packets to be process switched and that will cause very high cpu
utilization and other consequent problems.

If you do run into a problem that only happens when CEF is enabled, it
is likely a software bug and you should try and upgrade to a later
version that has a fix.

Cisco da Gama
http://ciscostudy.blogspot.com

 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
ip route-cache and CEF Kenny D Cisco 4 09-06-2007 10:31 PM
HARDWARE cef or SOFTWARE cef ? comp.dcom.sys.cisco Cisco 2 03-23-2006 01:09 PM
When only central CEF (not distributed CEF) is enabled on 7500-series router... ETLALAR Cisco 2 01-19-2004 10:39 AM
CEF and Dynamic Routing Chris Ames-Farrow Cisco 2 10-20-2003 01:49 PM
CEF and Dynamic Routing Chris Ames-Farrow Cisco 0 10-17-2003 09:48 PM



Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57