cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1181
Views
0
Helpful
0
Replies

BGP config for FTD VPN with backup VTI

tato386
Level 6
Level 6

I setup a site to site VPN with a pair of FTDs using the FMC VPN wizard and static VTI interfaces.  Each FTD has two ISPs so I configured a backup tunnel using the 2nd set of ISPs and VTIs. I also setup BGP using the primary set of ISPs and VTIs. All of these seems to be working well.  I've attached some screenshots to help with the description of the environment.

At this point I want to make sure BGP continues to work in case of failover to the second set of VTIs. Even though they are configured as backup they are up and passing traffic. How should I setup BGP on the backup link? Should I just add another neighbor to each FTD using the IP of the backup VTIs? This seems fairly straightforward but before I do this I am looking for some input and suggestions in case there is another simpler maybe more streamlined and elegant way of doing this?  

TIA,

0 Replies 0