Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We have 2 ISP BGP peers (1.1.1.1, AS111; 2.2.2.2, AS222), ASA 5515-X (9.12.4.18), own public network (192.0.2.0/24, AS333).We need to have SSL VPN (and s2s too) be configured on this device, but on our IP-addresses, not ISP. Config be like:router bgp...
HelloWe have an ASA5510 v9.1.(7)32 at branch with configured IKEv2 site-to-site VPN to Head office.All traffic goes through VPN.ISP give an ip-address by DHCP with 4 gateways (yes, multiple), that randomly changes. Some of them reachable via ICMP, so...
There is only 2 solutions:1. Ask ISP for using only one BRAS for that branch.2. Connect link to ISP via switch/etc with applied acl, blocking gray-nets traffic.
IPSec data plane support for the Suite-B transforms is only available on the following ASR1000 platforms: ASR1001-X, ASR1001-HX, ASR1002-X, ASR1002-HX, and ASR1006 or ASR1013 with an ESP-100 or ESP-200 module. If Suite-B transforms are configured on ...