06-05-2017 12:46 PM
With the latest release of the Cisco ASA iOS, they have added support for Virtual Tunnel Interfaces over IKEV2.
I have been able to successfully great a tunnel and pass traffic between my ASA Inside Network and my Azure Hosted Virtual network.
But after so long my tunnel drops and I have to change the static IP on the VTI to get the tunnel to start back up.
Does anyone have an example ASA config that has been working consistently for several days?
Once I resolve this issue, I will be posting the powershell instructions for setting up a VPN Gateway on Azure for Cisco ASA and the Cisco ASA Config once my deployment is perfected.
Thanks,
Nate
06-07-2017 04:48 AM
I just noticed this but Azure has new VPN SKUs
When you create a virtual network gateway, you need to specify the gateway SKU that you want to use. Select the SKUs that satisfy your requirements based on the types of workloads, throughputs, features, and SLAs. Azure offers the following VPN gateway SKUs:
SKU | S2S/VNet-to-VNet Tunnels |
P2S Connections |
Aggregate Throughput |
---|---|---|---|
VpnGw1 | Max. 30 | Max. 128 | 500 Mbps |
VpnGw2 | Max. 30 | Max. 128 | 1 Gbps |
VpnGw3 | Max. 30 | Max. 128 | 1.25 Gbps |
Basic | Max. 10 | Max. 128 | 100 Mbps |
10-13-2017 03:46 AM
Hi Nathan,
Can you pls help me out to establish the s2s VTI VPN connection between ASA on prem and Azure site. I don't have any idea how Azure configuring the solution. My concern here is
1)Would I use any pvt range IP adds for configuring Tunnel interfaec or it should be mutually decide from both end.Let's say I use 172.16.1.1/24 then will Azure use 172.16.1.2/24 at their virtual interface ?
2)Should I create any ACL for identifying the interesting traffic or no need as it is route based VPN ?
3)After establishing the tunnel ,our demand is force-tunneling.It means Azure side machines sould be redirected to on prem/our side to access internet,so how we reserve the bandwidth and controll the traffic on our ASA?
Thnak you very very much in advance.Waiting for your reply.
Regards,
Jagat
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: