07-02-2009 02:39 AM
I have a requirement whereby I have an ASA with a L2L tunnel to two routers. Both routers are on the same site and have the same network behind them. I thought of using HSRP on the public interfaces of the routers linked to the crypto-map but they are both connected to different ISPs so I don't think that'll work.
Is there a way of achieving this?
Many Thanks in advance
Dom
07-02-2009 03:52 AM
You can configure in the ASA crypto map both ip addresses of the routers for the VPN tunnel.
The ASA will try the first one and connect - if the connections drops and the first IP address is not reachable, it will use the second IP.
HTH>
07-03-2009 06:04 AM
Hi Andrew,
Thanks for your reply - Is this something you've successfully implemented?
Cheers, Dom
07-03-2009 06:15 AM
Dom,
np - yes I have done it like this before, and a few variations on the theme.
I personally prefer GRE tunnels with dynamic routing and keepalives.
But doing it this way with static routes, works just as well.
HTH>
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide