12-10-2015 08:09 AM - edited 03-12-2019 12:01 AM
Hey folks,
Quick question regarding routing on ASAs;
I have a site to site VPN using a crypto map with an ACL for interesting traffic. But do I need to configure a routing protocol to forward the traffic to the tunnel?
thanks,
Paul
Solved! Go to Solution.
12-10-2015 08:21 AM
Hi Paul,
Is not necessary to have a routing protocol running in order to route the traffic.
The only requirement is that the destination networks in the interesting traffic are send over the interface where the crypto map is applied. Normally this is accomplish through static routes.
Hope it helps
-Randy-
12-10-2015 08:46 AM
Right, that will work as long as you don't have any overlapping route pointing this traffic to the inside interface.
12-10-2015 08:21 AM
Hi Paul,
Is not necessary to have a routing protocol running in order to route the traffic.
The only requirement is that the destination networks in the interesting traffic are send over the interface where the crypto map is applied. Normally this is accomplish through static routes.
Hope it helps
-Randy-
12-10-2015 08:33 AM
So a default route that sends all the traffic to the outside interface will make sure that any 'interesting' traffic will be encrypted and tunneled ?
12-10-2015 08:46 AM
Right, that will work as long as you don't have any overlapping route pointing this traffic to the inside interface.
12-10-2015 08:47 AM
thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide