05-02-2023 07:21 AM
I have a Cisco Firepower 2110 and would like to have a backup internet connection. I don't want it to be a redundant system, I basically just want it as a fail safe in case our primary internet connection fails.
Example, to be clear: If Ethernet1/15 is internet provided by my current ISP, I would like to have a secondary ISP configured on Ethernet1/16 to be a backup if Ethernet1/15 goes down.
I've read conflicting information on whether or not this is possible of the Firepower 2110. Seems like a fairly simple task that it should be able to handle, but before I start paying for a secondary ISP, I'd like to be certain this is doable.
Is there a clear guide for how to accomplish this available somewhere?
Thanks!
05-02-2023 07:29 AM
@matacus you don't say whether you are using FDM or FMC. You will essentially use SLA monitor and track the primary ISP connection and failover to the secondary connection if the primary fails.
Here is a guide for either.
https://integratingit.wordpress.com/2020/08/14/ftd-dual-isp-failover/
https://integratingit.wordpress.com/2021/05/06/ftd-dual-isp-using-fdm/
05-02-2023 08:16 AM
I'm using ASDM 7.10 for ASA.
05-02-2023 08:18 AM
@matacus then here is an ASA example to configure Dual ISP with IP SLA.
https://integratingit.wordpress.com/2019/11/24/asa-dual-isp-using-ip-sla/
05-02-2023 01:12 PM
Thank you! Once I get a secondary internet connection run, I'll configure and test this out.
05-02-2023 07:33 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide