04-02-2016 09:44 PM - edited 02-21-2020 08:45 PM
Hi,
I wanted to configure Anyconnect on my ASAs (A/P cluster 5585, 9.2) (i have 2 ISPs for link fail-over) is there any option to reduce public IP usage? ( example introducing loop-back interface)
Thanks,
Sankar
04-02-2016 10:42 PM
Hi Kamesh,
We cannot create a loopback IP on ASA as it is not supported.
Regards,
Aditya
Please rate helpful posts.
04-03-2016 12:04 PM
Ok, thank you Aditya
04-02-2016 11:19 PM
Kamesh,
If you have 2 active internet connections on the ASA, then you can use one interface to terminate IPSec and another to terminate Anyconnect.
This will work due to the way the ASA's routing table is currently designed. ASA maintains not only global routing table but per-interface routing table as well.
In
Regards,
Dinesh Moudgil
P.S. Please rate helpful posts.
04-04-2016 08:40 AM
Thanks so much, is there any way to reduce usage of public IP
04-04-2016 10:15 AM
Hi Kamesh,
Could you please elaborate the requirement ?
What is the need for reducing usage of Public IP ?
Are we having mutiple application servers on the inside and for them we need different NAT statements ?
Let us know what is the public IP subnet you are using.
Regards,
Aditya
Please rate helpful posts and mark correct answers.
04-04-2016 03:05 PM
HI Aditya,
As per below, i have to setup Anyconnect / Site-to-Site on one cluster, in other hand DMVPN setup with individual links, in this scenario how can i reduce Public IP usage ?
04-05-2016 09:52 AM
Hi Kamesh,
Anyconnect/S2S will only use one public IP.
Are they just
Regards,
Aditya
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide