<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5510 with double connection in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150963#M359705</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/thread/1003022"&gt;https://supportforums.cisco.com/thread/1003022&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 21 Mar 2013 18:22:10 GMT</pubDate>
    <dc:creator>Collin Clark</dc:creator>
    <dc:date>2013-03-21T18:22:10Z</dc:date>
    <item>
      <title>ASA 5510 with double connection</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150962#M359704</link>
      <description>&lt;P&gt;Customer with an internal network with several VLAN, Switch Layer-3 and Firewall.&lt;/P&gt;&lt;P&gt;VPN L2L with site B.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I need to add a leased line that directly connect site A with site B.&lt;/P&gt;&lt;P&gt;To protect my Network, I would like to connect this leased line to a new DMZ of my ASA.&lt;/P&gt;&lt;P&gt;No problem to manage the route on the Firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The question is: can I keep the VPN as BackUp, in case of failure of the leased line ?&lt;/P&gt;&lt;P&gt;Can I track (with SLA monitor) the response of the leased line ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or the only way is to connect the leased line directly to the Layer-3 Switch (Cisco-3925), losing the Firewall protection on this line ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Attached a scheme that can help you understand.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regard,&lt;/P&gt;&lt;P&gt;Claudio&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:17:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150962#M359704</guid>
      <dc:creator>battanc</dc:creator>
      <dc:date>2019-03-12T01:17:44Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 with double connection</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150963#M359705</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/thread/1003022"&gt;https://supportforums.cisco.com/thread/1003022&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Mar 2013 18:22:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150963#M359705</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-21T18:22:10Z</dc:date>
    </item>
    <item>
      <title>ASA 5510 with double connection</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150964#M359707</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think it's ok to connect leased line to another interface. I would only call that interface not DMZ, but smth like outside2 just for it to be more logical. &lt;/P&gt;&lt;P&gt;You will have to configure static route on your leased line towards the subnet on site B and do the tracking for that interface. And that static route would be preferred by default for that subnet, as soon as for ISP-line you're using just default route. In case of failure of leased line traffic to site B will match the default route, fall into crypto-map and get sent throug the vpn-tunnel.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Mar 2013 19:31:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-with-double-connection/m-p/2150964#M359707</guid>
      <dc:creator>Andrew Phirsov</dc:creator>
      <dc:date>2013-03-21T19:31:59Z</dc:date>
    </item>
  </channel>
</rss>

