Hi all,
I have a Hub nd Spoke VPN architecture realized with sVTI, IKEv1 and IPsec.
My hub is connected to a single ISP.
I'd like to have an hardware redundancy for my hub.
Instead of creating a double tunnel in each spoke i'd like to use a failover protocol over my 4000ISR router.
Is there a way to realize it simply?
If I use IOS IPsec failover do I have to deploy my changes on both router or (like ASA) I may configure the active router and let the standby receive the chenges?
Thank you all.
Johnny