cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1310
Views
0
Helpful
1
Replies

Dual Homing VPN Connection - Question

raun.williams
Level 3
Level 3

Hello all,

I'm hoping to get some feedback on a scenerio, that I'm unsure is possible given certain parameters:

We are looking into putting a remote site in place that at this time, can not have any major wan connection (MPLS, T1+, ect) but must rely on simple internet providers such as cable and DSL.  The site would have multiple WAN connections for redundancy (let's say a Cable Connection AND a DSL link)

The site would then go back to a corporate office via a vpn connection on an ASA 5520.  The gear at the remote site is undecided at this time, but most likely a 2900 series router for other features.  Is it possible, given the type of internet connections, to setup a dual homed vpn connect back to corporate utilizing the cable and dsl connection?  Given the type of wan connections, BGP is not possible.  

Or, is it possible to create two seperate tunnels (one per wan link) and combine them internally to the router? 

Thank you for your time,

Raun

1 Reply 1

jj27
Spotlight
Spotlight

Hi,

You can specifiy multiple peer IP addresses on the same single tunnel. It will try to build a tunnel to the first peer and if it fails it will try the next peer.

You would setup two default routes on your remote site router.  One with a higher metric so that if the primary ISP interface goes down the secondary ISP interface will be used.

Also, if you have a 2900 (or other Cisco router) at your main site you could build use  GRE over IPSEC tunnel and then you could run your routing protocols through the GRE tunnel.