09-11-2008 12:23 AM - edited 03-11-2019 06:42 AM
HI, Friends
I have a pix515 at hyderabad and other at Delhi both are in vpn-tunnel, i would like to have one more vpn-tunnel configured with different isp provider on both locations along with the current tunnel, This should act like a failover to the first tunnel. Is this possible. ??
Thx
Solved! Go to Solution.
09-11-2008 01:07 AM
on the PIX 515 you can use Static route tracking is used to achieve this redundancy
Beware that this design is a single point of failure. I would have two seperate firewalls.
Once you setup the multiple internet on the PIX's, then you create the second tunnel. you might have to do NAT on the second tunnel to prevent any conflict between your local/remote subnet in your ipsec interesting traffic.
09-11-2008 01:07 AM
on the PIX 515 you can use Static route tracking is used to achieve this redundancy
Beware that this design is a single point of failure. I would have two seperate firewalls.
Once you setup the multiple internet on the PIX's, then you create the second tunnel. you might have to do NAT on the second tunnel to prevent any conflict between your local/remote subnet in your ipsec interesting traffic.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide