cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1542
Views
0
Helpful
1
Replies

ASA Support for IPSec with OSPF

hamzaburney
Level 1
Level 1

Hi, 

   It seems like I cant do GRE tunnels on ASA? and neither can I do IPSec VPN Tunnels and run OSPF over the tunnel interface?

Can you guys please confirm me on this and suggest whats the best way out if I want to build 2 x Site-to-Site IPSec tunnel and do fail-over between dual links using ASA? 

Thanks.

1 Reply 1

David Castro F.
Spotlight
Spotlight

Hello,

ASA does not support GRE interfaces or mGRE interfaces, and you can configure a L2L with OSPF across, you will need to allow Unicast OSPF through IPSec, and for dual ISP, you may configure IP SLA monitor as well:

Configure OSPF across VPN

- http://www.networkengineerblog.com/2009/12/configuring-ospf-on-cisco-asa-firewall.html

IP SLA with Dual ISP:

- http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/70559-pix-dual-isp.html

Keep me posted, please proceed to rate and mark as correct the helpful post!

David Castro,

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: