cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
589
Views
0
Helpful
5
Replies

Pix to Pix vpns

ibjames
Level 1
Level 1

We are implementing pix to pix vpns so in case our t1 goes down it will go to our backup cable modem and create a pix to pix vpn connection..

I want to learn how to work with this, so I can contribute.. my question is.. how do I do that? Where do I start? It's not like I can just jump on a router and start plugging around.. is there anything anyone suggests??

5 Replies 5

mnlatif
Level 3
Level 3

Take a look at this

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094761.shtml

You will also need to configure your router to send traffic to the PIX,when T-1 link is down.

\\ Naman

thanks..

but how would the pix know when it should start creating the vpn tunnel because the t1 is down? I do realize that the router would have to sense the t1 down and then start sending internet bound traffic now towards the pix. Can the pix detect that it needs to create the tunnel when it starts getting outbound traffic? Isn't it getting outbound traffic anyway because we are running websense?

Again.. total newbie and am trying to get going on this an learn.. so I apologize if I am a bubbling idiot..

I was also wondering if anyone could tell me what the hub is in the diagram of this page..

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00800a2cce.shtml#hw

I wonder if this could be done with 4 sites..

anyone else? any feedback is highly appreciated!

Hi there.

The configuration example can work for more than 4 sites, if you configure it right! =)

The hub in the diagram was used to create the configuration in a lab environment. It's the easiest way to have them hooked up to each other through their public interfaces.

If the T1 is terminating on the router, then you would have to configure a static floating route on the router, so when the T1 goes down, the router will forward the internal traffic to the PIX. The VPN will be activated on the PIX once traffic from your private network needs to reach the other private network through the VPN.

Review Cisco Networking for a $25 gift card