cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
621
Views
0
Helpful
3
Replies

TWO ASA WITH TWO ISP

jsk.cisco
Level 1
Level 1

Hi ,

We are planning to implement one ISP on Active ASA and second ISP on stanby ASA. Can you please help us how can we achive this topology without any router in between that .

I had just go with ASA failover doc but in that case two isp terminated on router and then goes to ASA . In my case ISP link will directly terminated on each ASA .

Please suggest with some example.

Thanks

3 Replies 3

Julio Carvajal
VIP Alumni
VIP Alumni

Hello,

The thing is that both firewalls needs to sit behind the same subnet so the failover can be 100 % successful ( all the interfaces being monitored on the right way) as you said you will need a router and then do PBR on SLA on the router.

Concerning to the ASA I do not see a way to make this work on an active/standby failover as they need to be on the right same subnet.

Regards,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

What do you need to do with these two ISP's? Failover can happen on link that connects the ASA's together which will be on the same subnet.

Review Cisco Networking for a $25 gift card