GETVPN

Sep 7th 2025

Why GETVPN?

Cisco Group Encrypted Transport VPN (GET VPN) is a set of features that are necessary to secure IP multicast group traffic or unicast traffic over a private WAN that originates on or flows through a Cisco IOS device. GET VPN combines the keying protocol Group Domain of Interpretation (GDOI) with IP security (IPsec) encryption to provide users with an efficient method to secure IP multicast traffic or unicast traffic. GET VPN enables the router to apply encryption to nontunneled (that is, “native”) IP multicast and unicast packets and eliminates the requirement to configure tunnels to protect multicast and unicast traffic.
Security and VPN Configuration Guide, Cisco IOS XE 17.x - Cisco Group Encrypted Transport VPN [Cisco IOS XE 17] - Cisco

This include two examples how to configure GET-VPN, GDOI and G-IKEv2/IKEv2.

GETVPN - GDOI
getvpn, vpn

GETVPN - GKM
getvpn, vpn