cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

336
Views
0
Helpful
1
Replies
craig-mitchell
Beginner

L2L VPN tunnel on ASA with route tracking enabled

Can someone describe to me how you would configure a VPN tunnel on a remote peer that connects to an ASA that has route tracking enabled. How would you configure the tunnel when the peer address could be one of two different addresses? Thank you!!

Sent from Cisco Technical Support iPhone App

1 REPLY 1
Lee Valentin
Beginner

Add the second peer to the crypto map and create a second tunnel-group with the second IP.

crypto map VPN 10 set peer

tunnel-group type ipsec-l2l

tunnel-group ipsec-attributes

pre-shared-key *****

tunnel-group type ipsec-l2l

tunnel-group ipsec-attributes

pre-shared-key *****

When the primary fails on the ASA, the tunnel will try to establish on the second peer ip.

Good luck.

Content for Community-Ad