cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1054
Views
3
Helpful
4
Replies

ASA 5510 ASDM - routing VPN over different external interface

smithcolm
Level 1
Level 1

Hi.

I have an ASA 5510.   (ASA 8.0(4)  ASDM 6.1(3)

I have 2 internet connections (only 1 is currently active)

Currently all internet and VPN traffic go over 1 interface.

What I want , is to move general internet onto the new internet connection but keep VPN traffic on the old internet connection.

I can get the internet working but as soon as i do the VPNs go down.

VPNs are site to site vpns.

Is it possible to do this?

Cheers

4 Replies 4

Jennifer Halim
Cisco Employee
Cisco Employee

Yes it is possible to do.

You can't have 2 default routes pointing to 2 different interfaces.

What you would need to configure is default routes configured for the Internet traffic, and static route for the remote LAN subnet as well as the VPN peer address pointing towards the VPN interface.

I had already tried the route for the remote lan subnet but that didnt work.

its possible i was routing through incorrect IP.

it doesnt matter now though as old link will be decommissioned so i dont need to keep them both running simultaneously.

Thanks for the update.

out of curiosity, do you also route the remote peer address via the other interface?

Not sure i understand what you're asking.

i dont do any specific routing of the remote peer, i just changed the VPN settings and i guess the routing took care of itself.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: