In a new DMVPN deployment, phase 1 completes successfully. However, phase2 experiences issues. Which troubleshooting step is valid in this situation?
A. Remove NHRP configuration and reset the tunnels.
B. Verify IP routing between the external IPs of the two peers is correct.
C. Ensure that the nodes use the same authentication method.
D. Temporarily remove encryption to check if the GRE tunnel is working.
D is correct.
The phases in DMVPN is not the same like ASA IPSec site-to-site VPN. You can remove phase 2 configuration and GRE tunnel will still be up. You can even ping the other end of the tunnel with just Phase 1 completed.
Short Answer:
DMVPN Configuration
Phase 1
Hub Router
Spoke Routers
Verification
Phase 2
Spoke Configuration
Verification
Phase 3
Hub Router
Spoke Configuration
Routing Table
Long Answer: Read the link below.
https://networkdirection.net/articles/routingandswitching/dmvpn/dmvpn-configuration/
B is valid as well
could you explain why? phase 1 compleet, connection between points established.
D is correct.