cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1545
Views
0
Helpful
1
Replies

ASA Support for IPSec with OSPF

hamzaburney
Level 1
Level 1

Hi, 

   It seems like I cant do GRE tunnels on ASA? and neither can I do IPSec VPN Tunnels and run OSPF over the tunnel interface?

Can you guys please confirm me on this and suggest whats the best way out if I want to build 2 x Site-to-Site IPSec tunnel and do fail-over between dual links using ASA? 

Thanks.

1 Reply 1

David Castro F.
Spotlight
Spotlight

Hello,

ASA does not support GRE interfaces or mGRE interfaces, and you can configure a L2L with OSPF across, you will need to allow Unicast OSPF through IPSec, and for dual ISP, you may configure IP SLA monitor as well:

Configure OSPF across VPN

- http://www.networkengineerblog.com/2009/12/configuring-ospf-on-cisco-asa-firewall.html

IP SLA with Dual ISP:

- http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/70559-pix-dual-isp.html

Keep me posted, please proceed to rate and mark as correct the helpful post!

David Castro,