cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

573
Views
0
Helpful
3
Replies
Highlighted
Beginner

Configure Cisco ASA 5525-X with 2 ISP's

Can the Cisco ASA 5525-X be configured with 2 ISP's?

 

Could I use two Cisco ASA 5525-X's and then configure each one with 2 ISP connections for fail over?

3 REPLIES 3
Highlighted
VIP Mentor

Highlighted
VIP Mentor

yes, you can do also, you can use the best utilization also splitting the traffic to each ISP.

 

here is a general example :

 

https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118962-configure-asa-00.html

 

https://community.cisco.com/t5/security-documents/dual-isp-implementation-on-asa/ta-p/3144475

BB
*** Rate All Helpful Responses ***
Highlighted
Beginner

The examples you were given will work but I would say not very reliable. If you have ANY blips in the object you are monitoring, it will flop over. It would have been better if they allowed it to track more than one object like the ASR IOS code does.

Example:

sla monitor 1
type echo protocol ipIcmpEcho 4.2.2.2 interface outside-SpectraNet
frequency 30
sla monitor schedule 1 life forever start-time now

sla monitor 2
type echo protocol ipIcmpEcho 8.8.8.8 interface outside-SpectraNet
frequency 30
sla monitor schedule 2 life forever start-time now

track 123 rtr 1 reachability
delay down 30

track 234 rtr 2 reachability
delay down 30


track 456 list threshold weight
object 123 weight 5
object 234 weight 5
threshold weight up 5


route outside-SpectraNet 0.0.0.0 0.0.0.0 203.122.xxx.xxx 1 track 456

As it stands right now, and I am really surprised is that the sla monitor does not offer delay's (think hold down timer) and the track statements do not offer object weighting.

Regards!





Content for Community-Ad