My goal is to have an 891 router at a branch office with two, always active VPN tunnels where the routing would switch to the secondary tunnel within the 891. On the Hub side there would be two ISPs connected into the same MPLS cloud which has internet access. Is this possible? Which device should I terminate the VPNs on. Typically used ASAs in the past.
Remote Site
I
891
I
Cable/DSL
I
MPLS
I
/ \
ISP1 ISP2
I I
R1 R2
I |
ASA ASA
I I
Core SW1 SW2 Core
\ /
Server
To take it even further I would like to configure the branch office with two ISPs but have a VPN connection over both.