12-31-2012 08:30 AM
Hi All,
I configured dual ISP on ASA 5520 with a help of cisco doc below. Now I would like to configure SSL VPN to work with this for failover? Could anyone shed some light on me for this one? I tried to find an article regarding this but I could not.
01-01-2013 02:23 PM
you can configure the SSLVPN same way as in one ISP case. and after that enable webvpn on backup intreface also using below command.
webvpn
enable backup
that way when priamry ISP goes down the users can connect via secondary ISP.
here is a deployment guide for SSLVPN.
01-02-2013 09:34 AM
Thank you, Jitendra.
I will try this and will update here.
01-02-2013 11:41 AM
One thing to keep in mind is that once the failover occurs the internet-facing IP address of your ASA will change, which will mean the old URL may not work anymore (depending on your topology; I'm assuming your ASA has public addresses on Internet-facing links). Just be sure to either use a service that will update your DNS records if the first link goes down or make sure users are trained to use a new URL in the event of an outage.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide