BGP is for the "border" nodes, e.g.
those nodes which connect the pieces of 44 into the Internet. If you
want to use IPIP behind the BGP, or GRE, L2TP, within your subnets,
nobody should care -- but this every node has an "encap.txt" file is,
IMHO, crazy.
ONTH - it provides a layer of robustness and redundancy...
BGP node provides endpoint for tunnels (VPN, IPIP,
etc.)
subnet nodes connect to the BGP node via tunnel, the BGP node routes
to the rest of 44.x.x.x and the Internet.
Then the simple node is easy.
Who is my BGP border node?
How do I VPN to it?
Set up VPN (or Tunnel) to it.
Done.
If the BGP border node is gone - then what is the back up process????
It would be good to take the IPIP scheme to the next layer with some
local RIP announcements by node-gateways. That would make things more
dynamic than the static encap file.
Bill, WA7NWP