<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA Load Sharing to Single ISP in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-load-sharing-to-single-isp/m-p/1332391#M819345</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I have read through countless posts on my question and have gleaned a lot of information from them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My scenario is this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a 6500 core connected to two ASA's in active/standby mode. The ASAs are connected to two 3550 switches which are providing BGP pairing with each other and our ISPs Internet links, both 1Gb/s one to each switch, running as primary/backup. The ASA has a default route to the HSRP address shared by the switches.&lt;/P&gt;&lt;P&gt;We have cause to allocate a subnet from our range to a third party temporarily. I would like to route this subnet through the backup link (outgoing and incoming)&lt;/P&gt;&lt;P&gt;I can configure BGP to route accordingly, but this will only apply for incoming traffic.&lt;/P&gt;&lt;P&gt;I could put a route-map on on of the 3550's to reroute traffic based on source ip to use the other switch/backup link, but this will waste bandwidth on the switch interface.&lt;/P&gt;&lt;P&gt;Any other ideas how I can push one subnet out of one switch, and the rest through the other?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks for reading,&lt;/P&gt;&lt;P&gt;Phil.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 16:07:31 GMT</pubDate>
    <dc:creator>isa-aston-03</dc:creator>
    <dc:date>2019-03-11T16:07:31Z</dc:date>
    <item>
      <title>ASA Load Sharing to Single ISP</title>
      <link>https://community.cisco.com/t5/network-security/asa-load-sharing-to-single-isp/m-p/1332391#M819345</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I have read through countless posts on my question and have gleaned a lot of information from them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My scenario is this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a 6500 core connected to two ASA's in active/standby mode. The ASAs are connected to two 3550 switches which are providing BGP pairing with each other and our ISPs Internet links, both 1Gb/s one to each switch, running as primary/backup. The ASA has a default route to the HSRP address shared by the switches.&lt;/P&gt;&lt;P&gt;We have cause to allocate a subnet from our range to a third party temporarily. I would like to route this subnet through the backup link (outgoing and incoming)&lt;/P&gt;&lt;P&gt;I can configure BGP to route accordingly, but this will only apply for incoming traffic.&lt;/P&gt;&lt;P&gt;I could put a route-map on on of the 3550's to reroute traffic based on source ip to use the other switch/backup link, but this will waste bandwidth on the switch interface.&lt;/P&gt;&lt;P&gt;Any other ideas how I can push one subnet out of one switch, and the rest through the other?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks for reading,&lt;/P&gt;&lt;P&gt;Phil.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:07:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-load-sharing-to-single-isp/m-p/1332391#M819345</guid>
      <dc:creator>isa-aston-03</dc:creator>
      <dc:date>2019-03-11T16:07:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASA Load Sharing to Single ISP</title>
      <link>https://community.cisco.com/t5/network-security/asa-load-sharing-to-single-isp/m-p/1332392#M819360</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You could use the weight attribute in BGP to influence that route to go out the backup circuit. You will have to configure it using a route map so only the specific route gets weighted. I think a static route would work too. Since the ASA does not support PBR, I don't think it's possible there.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Aug 2009 12:19:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-load-sharing-to-single-isp/m-p/1332392#M819360</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2009-08-19T12:19:29Z</dc:date>
    </item>
  </channel>
</rss>

