Hi all,
we want to implement two Cisco ASA 5515x's in a HA setup.
Inside interface of both ASA's will be in the same VLAN spanned accross two geographically dispersed DC's using 10gig ethernet link.
Now...
The two core switches that the Cisco ASA will connect to are autonomous switches... no etherchannel, vPC, VSS etc...
So, for OSPF on the inside between the ASA's and the Core's, will each ASA appliance have its own OSPF neighbor to its directly attached core switch?
Or, will only the Active Appliance have an OSPF neighborship?
Because our core's are not running etherchannel, vPC or VSS, I cannot see how the Core's can maintain an OSPF neighborship during a failover.
Does anyone have experience with this kind of setup? We do not want static routes on our network for every VPN that we set up. We would like ASA to advertise new VPN routes in to the Core as and when a new VPN is configured.
Is this possible?
Thanks
Mario