cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1271
Views
0
Helpful
15
Replies

ASA Routing Question

dcanady55
Level 3
Level 3

Hello,

ASA 5525 8.6. 

Current situation- packets bound for a particular network leave the FW on a specific interface go to the DMZ and finally hit router A that sends these packets out the WAN to their destination.

 

What needs to happen-if  router A  goes down I need these packets to go out router B. These packets would leave the FW on the same interface and go to the same DMZ the only difference is from the DMZ they would go to router B instead of A. This process needs to happen dynamically. 

On the ASA there are no dynamic routing protocols setup it's all static routes. It looks like there could be several different ways to accomplish this I was hoping to get feedback on what I read about and perhaps others I am missing.

1. setup EIGRP on the FW and both routers A and B.

2. Configure Static Route Tracking on the ASA- I have not used this before but thought it would be the easiest solution. If I understood it correctly, I could add static route tracking to router A then track this using ICMP and if an echo reply is not received within a set time period the route to A is removed and the backup route to B would be used?

3. ECMP was another thought. This looks like it balances the network between both A and B which would be fine really and if either went down I would assume all traffic would just dynamically flow to the router that was up and then go back to balancing each other once the issue was resolved?

4. What if I leave the static route on the FW currently to A but then add another static route to B but change the AD to 10. If A goes down the FW should see this and start routing packets out the next route to B correct?

 

Thanks for any input!

 

15 Replies 15

my bad- router B does have a different IP address everything is the same except one is 64 and 164 so I over looked it quick.  

Review Cisco Networking for a $25 gift card