Site to site VPN OCI to on-prem with Cisco 2921

I am trying to setup a S2S connection between Oracle OCI to my home network to try a hybrid on-prem to cloud setup. I follow the model described here: https://www.oracle.com/cloud/networking/site-to-site-vpn/, I’ve got access to the OCI documentation and it actually does mention my router (albeit a different iOs version!)… but still no luck, I can’t make it work. 🙁

As everything with network setups it does get tedious and it is not trivial at all, there are really a ton of configs to go through. I also think the version on the Router play a role in the commands availability and compatibility, it is not helping, and if I want to update my router, Cisco does not let me do it because I have to have an account and subscription.

Imagine, just to get my VDSL internet connection up with Cisco 2921 it was difficult, I did setup a basic connectivity using PPPoE and my internet service provider credentials, and a small tp-link modem as bridge in front of the router, but had trouble with internet login pages not showing, even though I could ping out to the world; in the end and after two evening of research MTU and MSS size were to blame (in my case 1492 and 1452, if you are wondering), and MTU applied on my WAN port and MSS applied on my internal LAN port.

Site to Site VPN seems even more complex and I do not have enough basics on VPN security. I think I’ve got some homework to do and will revisit the issue soon, maybe some Networking colleagues can help me here? I’ll keep you posted with my progress.

Leave a Reply

Your email address will not be published. Required fields are marked *