cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
455
Views
0
Helpful
3
Replies

Using a ASA5520 with seperate ISP's for internet and vpn access

jidesai01
Level 1
Level 1

Is it possible to use a pair of ASA 5520's in Active/Standby mode with a seperate ISP for internet access and VPN access? We want to seperate Internet and VPN traffic.

3 Replies 3

Farrukh Haroon
VIP Alumni
VIP Alumni

What do you mean by 'VPN Traffic'? An MPLS-Based IP-VPN provided by a DSP? Or this is your WAN Intranet sort of link, on which VPNs will be terminated? Anyway both these cases are possible as long as you don't need a default route. Because the ASA cannot have two default routes pointing to two different interfaces. As you know Internet will (almost) always require the default route.

Regards

Farrukh

By VPN traffic, I mean that we will have to seperate connections to the internet by different ISP's. One connection will be used for access to the internet (web browsing) and the second for IPSEC and SSL VPN connections to different small offices. To make this work, would I configure two outside and two inside interfaces? Are there any docs I can look at? Thanks.

Review Cisco Networking for a $25 gift card