cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
320
Views
0
Helpful
0
Replies

PBR as a local policy on ASA

m.glosson
Level 1
Level 1

It's nice that the ASA supports policy-based routing now. I'm not sure it's capable of the main thing I want to use it for, though. On an IOS router, you can specify a policy for packets sourced from the device itself using ip local policy. Is there an equivalent command on the ASA?

My scenario is that we have two "public" interfaces. I have VPN clients connecting to outside1. I want to gently transition them over to outside2 (i.e., the next time they connect, but not disrupting their current connections), but obviously the default route can only be pointed to one next-hop.

Let's say my two ASA public-facing interfaces are: Gi0/0: 1.1.1.2 and Gi0/1: 2.2.2.2. I would love to put in PBR to say "if the source is 1.1.1.2 the default next-hop is 1.1.1.1; if the source is 2.2.2.2 the default next-hop is 2.2.2.1."

Thanks

0 Replies 0
Review Cisco Networking products for a $25 gift card