cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
870
Views
5
Helpful
3
Replies

Multiple IPSEC tunnels from ASA using loopback.

Hi

We have Zscaler proxy in our environment. And we have created IPSEC tunnel between on prim ASA to Zscaler cloud.

Firmware Ver 9.12

Zscaler have limited B/w for each IPSEC tunnel to 200 Mb. Currently is tunnel is sourced from outside interface ip. Now we need to create more IPSEC tunnels to over come B/w limit.

As per Zscaler if multiple tunnels have same source IP then it will be considered as 1 and accumulate b/w will remain 200 Mb.

 

We thought of creating loop back ips with static public Ips and use them as tunnel source. Now ASA dont support loopback so need alternative.

 

3 Replies 3

Zscaler proxy support VTI ?
if it support then config multi VTI in ASA using same OUT interface.

No it only support Policy based vpn. No route based. VTI interface might not help.

 

Add a second/third/forth ASA?