I was trying to route one of the vlan internet traffic to Head office ASA, this vlan is inside VRF Network. Head office is connected through ISP VPN cloud. still the traffic is going through local ASA. Please advise.
description *** XXXXX ***
ip vrf forwarding ABC-VRF
ip address 10.X.X.X 255.255.255.0
ip policy route-map VLAN101-TEST
ip route vrf ABC-VRF 0.0.0.0 0.0.0.0 10.X.X.X 250 name INTERNET
Access-list 100 permit 10.X.X.X 0.0.0.255 any
route-map VLAN100-TEST permit 100
Match IP Address 100
Set ip next-hope X.X.X.X (VPN Gateway IP)
Does you ios support route-map command?
set ip vrf ABC-VRF next-hop xxxx
Please don't forget to rate any posts that have been helpful.
I do not want to route entire vrf network to HO ASA, only one vlan internet traffic needs to route. Thanks.
You don't have to.
The acl used with the PBR configuration defines which traffic uses the PBR next hop. The command Paul provided is used by PBR but only traffic matching the acl will be sent to that next hop.