cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1261
Views
0
Helpful
5
Replies

Configuring multiple neighbors for OSPF on ASA

baskervi
Level 1
Level 1

I understand that the ASA's interfaces can only be configured as a point-to-point link for OSPF. When we were on the phone with Cisco, the engineer said to run multiple OSPF areas and we should be good. It doesn't matter if I create mulitple areas or multiple OSPF process IDs, I simply can't create another neighbor as the following error shows up:

ERROR: Only one neighbor allowed on point-to-point interfaces

Is there any possible way to get this working?

Thanks

5 Replies 5

jgraafmans
Level 1
Level 1

You can configure an interface as point-to-point or leave it to the default which is broadcast. If you leave it to the default it will automatically form neighbors with all other OSPF routers in that network.

But leaving this off will keep an adjacency from forming over a VPN tunnel, correct?

We opened a TAC case for this, and the engineer tried to mock this up and wasn't successful. I presume it can't be done until the features in the firmware are added.

Hi,

Has any progress been made with this scenario - is there a way to have multiple OSPF neighbour adjacency’s over multiple IPSEC VPNs?

I have a requirement to have multiple VPNs between multiple ASAs and an IGP running between them over the VPNs, is this still not possible with the ASAs using OSPF? If not can, you suggest any other feasible solutions.

Thanks

Hi Dylan,

Did you get anywhere with mutliple OSPF neighbors over an IPSEC tunnel?

Now ASA9.0 supports site to site VPNs and OSPFv2 in multiple contexts, could cascading two contexts work?

James.

Review Cisco Networking products for a $25 gift card