04-01-2025 07:20 AM
Hello,
I have a Cisco Firepower 1150 running firmware version 7.6 with three connections to different ISPs.
I want to set up Remote Access VPN (AnyConnect), but I encountered a limitation: Firepower only allows configuring VPN on a single external interface. I successfully configured VPN on one external interface via the web interface, but I cannot add other interfaces for VPN.
My goal is to enable VPN access through all three ISP connections. If one ISP goes down, clients should automatically switch to another.
What are the possible solutions? Is there a way to enable VPN server on all three ISPs?
I would appreciate any advice or working configurations!
Thank you!
Solved! Go to Solution.
04-02-2025 06:07 AM
@axiceleet I assume you are using FDM? which is limited to enabled RAVPN on one interface, perhaps migrate to FMC/cdFMC management and then you can enable RAVPN on multiple interfaces.
04-02-2025 06:03 AM
You will need some sort of GSLB to route the DNS correctly, based on the ISP status. Are you using FDM or FMC?
04-02-2025 06:07 AM
@axiceleet I assume you are using FDM? which is limited to enabled RAVPN on one interface, perhaps migrate to FMC/cdFMC management and then you can enable RAVPN on multiple interfaces.
04-28-2025 02:12 AM
Thank you for answer!
I will use FMC management to enble RAVPN on multiple interfaces.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide