cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1138
Views
5
Helpful
4
Replies

Cisco ASA Multi context AWS VPN

HBB
Level 1
Level 1

A client of mine has a Cisco ASA that's currently running on multi context mode and needs to configure a site to site VPN to his AWS VPC. Kindly advise how to go about this as VTI is not supported on ASA in multi context mode. 

1 Accepted Solution

Accepted Solutions

A VTI (route-based) VPN is not required. You can use an "old school" policy-based VPN with crypto maps on the ASA.

You don't get the routing and (no) NAT simplicity of a VTI-based one, but it still works.

View solution in original post

4 Replies 4

Thank you for the prompt response. However, the article was not very helpful as it has a note at the top that says "Note: Currently VTI is only supported in single-context, routed mode" . This is exactly what I am searching for a walk-around for. ASA mutli-context mode does not support VTI and to the best of my knowledge I need VTI to setup AWS S2S VPN. 

A VTI (route-based) VPN is not required. You can use an "old school" policy-based VPN with crypto maps on the ASA.

You don't get the routing and (no) NAT simplicity of a VTI-based one, but it still works.

Thank you. I thought about it earlier but I was confused as AWS does not have a policy based configuration file for ASA. I was later able to see a guide online and it works. 

Review Cisco Networking for a $25 gift card