07-18-2008 06:34 AM - edited 02-21-2020 03:50 PM
Using ASA 5510s for L2L IPSEC tunnels with DSL connections between sites. These tunnels are for backup connectivity if the primary Metro connection goes down. As long as the Metro is up no traffic will flow across the IPSEC tunnels because there is no interesting traffic to initiate the tunnel.
Is there a way other than defining interesting traffic to keep the IPSEC tunnels up at all times?
I've set the VPN idle time out to none which should keep them up after they are initiated. I'd rather not have to pull my Metro connections to force the tunnels up and I don't want to wait for a Metro outage to ensure they are working.
Thanks!
07-19-2008 12:58 AM
if u want it up all time
use GRE over IPsec and use a routing protocol between ur VPN peers
in this case u gonna keep ur connection up
but if u have routing over ur metro
becare from makeing a conflect or ur the vpn being the prefered
good luck
rate if helps
07-19-2008 08:35 AM
maybe this can help somehow.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide