DMVPN Service Applications
The Aprisa LTE support the DMVPN service application. DMVPN is a service connectivity solution for
organizations requiring secure full mesh/PMP VPNs between main corporate site/s (Hub) and remote sites
(Spoke) over the internet with full networking and failover capabilities as shown in Figure 15.
The DMVPN service application support the following options:
✓ Hub and spoke (PMP) - where multiple hubs and multiple spokes are supported.
✓ Spoke to Spoke (mesh) – a full mesh connectivity is supported between the hubs and spokes.
✓ NAT with DMVPN - NATed hub and/or spokes are supported.
✓ Uses multipoint GRE (mGRE) Tunnel, IPSec and NHRP (Next Hop Resolution Protocol) for a flexible
virtual point to multipoint or full mesh secure VPN network.
✓ Can be used over dynamic routing protocols such as BGP and OSPF or static routes.
The Aprisa LTE DMVPN service application supports the following benefits:
✓ Secure full mesh connectivity built for any service/s over the internet/private network.
✓ Replace or used as a backup service over the internet for leased line/private network.
✓ Uses mGRE, dynamic IPsec and NHRP for autoconfiguration of secure VPNs and full mesh creation.
✓ Zero touch configuration when adding/removing spoke sites (no hub nor spoke configuration is
required).
✓ Full mesh reduce latency, bandwidth and eliminating hubs loads.
Figure 15 PMP and/or Mesh DMVPN Service Application
Figure 16 PMP and/or Mesh DMVPN Service with NATed Hubs Application