02-28-2022 01:21 PM
Hello,
I got a question about Cisco ASA VPN Load balancing and Public IP address for VIP. I have configured VPN load balancing on Outside interfaces using private IP addresses. The VIP is also a Private IP address in the same range as the Outside interfaces.
In order to access the VIP I need a public IP address for users. How do I configure this?
Thanks & Regards,
Sam
02-28-2022 01:32 PM
@IamSamSaul if the outside interfaces are all private ip addresses, you need 3 public ip addresses translated to the private ip addresses. You connect to the vip which then transfers you to the least loaded ASA.
02-28-2022 01:38 PM
Hi Rob,
Thanks for your reply. I'm using NAT static 1-to-1 (Public IP Address to Private IP Address of VIP) but it's not working. Is this the correct approach? Or as you mentioned, I do need three separate Public IP addresses?
Thanks.
Sam
02-28-2022 01:46 PM
You'd need 3 public ip addresses.
Once the user has connected to the vip, the session would be terminated on the ASAs outside interface ip.
02-28-2022 11:40 PM
Thanks for your reply. I will try to implement it with three Public IP addresses.
03-01-2022 05:25 AM
Follow
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: