- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2019 08:58 AM
Hello everyone,
I have a question .
My ASA 5515 is placed in a full meshed MPLS network.
This ASA which has the IP address of the MLS router as default route has several vlan configured. Soon an Internet connection will be installed to which only one of these VLANs will have to access. This line must be the default route of the Vlan and the Vlan must also have a second route to take advantage of the resources in MPLS. I would like to avoid activating the multi-context by inserting the Internet line as default route and then configure the static routes for MPLS.
Could I use route maps?
Thanks in advance.
Solved! Go to Solution.
- Labels:
-
Routing Protocols
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2019 09:42 AM
Dear Luca,
First of all you should check that ASA is running OS version 9.4. (show version): PBR support was introduced in 9.4.
I guess that you can do it via PBR. You should configure it on inside VLAN and set next-hop ip for MPLS network and leaving that all traffic, that not match ACL in PBR, use the default route towards internet.
In case you can use an ACL to limit traffic on VLAN that shouldn't reach Internet.
Andrea
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2019 09:42 AM
Dear Luca,
First of all you should check that ASA is running OS version 9.4. (show version): PBR support was introduced in 9.4.
I guess that you can do it via PBR. You should configure it on inside VLAN and set next-hop ip for MPLS network and leaving that all traffic, that not match ACL in PBR, use the default route towards internet.
In case you can use an ACL to limit traffic on VLAN that shouldn't reach Internet.
Andrea
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2019 09:43 AM
Dear Luca,
First of all you should check that ASA is running OS version 9.4. (show version): PBR support was introduced in 9.4.
I guess that you can do it via PBR. You should configure it on inside VLAN and set next-hop ip for MPLS network and leaving that all traffic, that not match ACL in PBR, use the default route towards internet.
In case you can use an ACL to limit traffic on VLAN that shouldn't reach Internet.
Andrea
