Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We currently peer with 2 ISPs using BGP in an active/failover configuration. My company wants to move to a 3 ISP model where Internet traffic is split across the 3 providers so that bandwidth is equally distributed on outgoing traffic across our 2 /...
Despite the fact that I have the following setting:crypto isakmp nat-traversal 10All tunnels are bi-directional. Our l2l tunnels keep dropping due to inactivity. On one client, the tunnel drops and doesn't come back up unless you remove the remote ...
So, in 8.2 If I had an inside interface at 10.10.10.1 and an mpls interface (sec-100) at 10.20.20.1, and I wanted traffic to traverse between the two to interfaces, I could write the following statement:static (inside,mpls) 10.10.10.0 10.10.10.0 netm...
Ok. So, here's the setup:[VPN Applicance1] ------------> IPSEC VPN1 <----------- [ASA 5525 8.6]----------> IPSEC VPN2 <----------- [VPN Applicance2]VPN Appliance 1 is connecting to ASA 5525 with an internal subnet of 192.168.1.0/24.VPN Appliance 2 i...
We have two clients that want to set up l2l IPsec VPN tunnels on an ASA 5525 (8.6) with the same /24 private IP range. Each customer requires access to the same remote /24 private range. Readdressing isn't a likely solution for either customer. Is...
Ok, so with multiple providers, simply prepend them the same and let the providers pick the best path for themselves for inbound.In this case, the iCore switches ARE the edge routers. Would the outbound solution look the same?It looks as if default ...
Excellent! Thank you for your valuable feedback! One last question: With the above scenario: Using the above mentioned real and mapped network and using the 8.6 software NAT configuration format (lets also presume that the remote sites NAT networ...