cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
406
Views
0
Helpful
1
Replies

L2L VPN tunnel on ASA with route tracking enabled

craig-mitchell
Level 1
Level 1

Can someone describe to me how you would configure a VPN tunnel on a remote peer that connects to an ASA that has route tracking enabled. How would you configure the tunnel when the peer address could be one of two different addresses? Thank you!!

Sent from Cisco Technical Support iPhone App

1 Reply 1

Lee Valentin
Level 1
Level 1

Add the second peer to the crypto map and create a second tunnel-group with the second IP.

crypto map VPN 10 set peer

tunnel-group type ipsec-l2l

tunnel-group ipsec-attributes

pre-shared-key *****

tunnel-group type ipsec-l2l

tunnel-group ipsec-attributes

pre-shared-key *****

When the primary fails on the ASA, the tunnel will try to establish on the second peer ip.

Good luck.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card