cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
625
Views
0
Helpful
1
Replies

ASA ip sla setup to Hub isp link

anand kumar
Level 1
Level 1

Hi All,

I have the network topology as mentioned in the diagram and we made the configurations as of below,
we need to get the internet failover from the firewall local isp link to the isp link of other site,

which will be reachable from the core's  mpls link 192.168.252.x with the longer AD.
(AT1CORE01#ip route 0.0.0.0 0.0.0.0 192.168.252.73 185----MPLS Link)


AT1CORE01#sh ip eigrp ne
EIGRP-IPv4:(10) neighbors for process 10
H   Address                 Interface       Hold Uptime   SRTT   RTO  Q  Seq
                                            (sec)         (ms)       Cnt Num
1   10.49.100.1             Vl100             12 10w2d       1   200  0  2978( Dmvpn Device)
2   10.49.91.1              Vl91              13 10w2d       1   450  0  542 ( Firewall)
0   192.168.252.73          Vl400             14 10w2d       1   200  0  1020( Mpls )
AT1CORE01#
------------------
AT1FW01# sh ip add
System IP Addresses:
Interface                Name                   IP address      Subnet mask
Method
Ethernet0/0              inside                 10.49.91.1      255.255.255.0
CONFIG
Ethernet0/1              outside                38.110.x.x    255.255.255.248
CONFIG
Ethernet0/2              state                  10.49.71.1      255.255.255.0
unset
Ethernet0/3.1            DMZ                    10.49.70.254    255.255.255.0
CONFIG
Ethernet0/3.2            DMZ_Mgmt               10.49.51.254    255.255.255.0
CONFIG
Management0/0            failover               10.49.81.1      255.255.255.0
unset
Current IP Addresses:
AT1FW01#
router eigrp 10
no auto-summary
distribute-list eigrp_route_filter in
network 10.132.91.0 255.255.255.0
redistribute static metric 10240 1 255 1 1500 route-map static_out_filter
 
access-list eigrp_route_filter standard permit 10.132.91.0 255.255.255.0
access-list eigrp_route_filter standard permit 10.132.50.0 255.255.255.0
access-list eigrp_route_filter standard permit 10.132.24.0 255.255.255.0
access-list eigrp_route_filter standard permit 10.132.26.0 255.255.255.0
access-list eigrp_route_filter standard permit 10.132.16.0 255.255.255.0
access-list static_out_filter standard deny 10.2.50.0 255.255.255.0
access-list static_out_filter standard permit any

route-map static_out_filter permit 10
match ip address static_out_filter

sla monitor 10
type echo protocol ipIcmpEcho 38.107.x.x interface outside
num-packets 3
sla monitor schedule 10 life forever start-time now
service resetoutside

---------------------

1 Reply 1

Maykol Rojas
Cisco Employee
Cisco Employee

Anand,

Thanks for the post. I dont see the question or the issue in your description, also, the Topology was not added.

Mike

Mike
Review Cisco Networking for a $25 gift card