03-19-2012 10:02 PM - edited 03-11-2019 03:44 PM
Hi ,
We are planning to implement one ISP on Active ASA and second ISP on stanby ASA. Can you please help us how can we achive this topology without any router in between that .
I had just go with ASA failover doc but in that case two isp terminated on router and then goes to ASA . In my case ISP link will directly terminated on each ASA .
Please suggest with some example.
Thanks
03-20-2012 12:53 PM
Hello,
The thing is that both firewalls needs to sit behind the same subnet so the failover can be 100 % successful ( all the interfaces being monitored on the right way) as you said you will need a router and then do PBR on SLA on the router.
Concerning to the ASA I do not see a way to make this work on an active/standby failover as they need to be on the right same subnet.
Regards,
Julio
03-20-2012 01:52 PM
What do you need to do with these two ISP's? Failover can happen on link that connects the ASA's together which will be on the same subnet.
03-22-2012 02:45 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide