cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
743
Views
0
Helpful
1
Replies

IPsec Site-to-Site VPN multisession?

nafrasiyabov
Level 1
Level 1

Hi people.

I recently faced an issue at work. Clients want  to make ipsec site-to-site vpn redundant. I have 2-asa-5520 working in a stack. Is it possible to configure site-to-site vpn in a redundant mode, like first peer ip address is x.x.x.x and secondary is y.y.y.y (backup) ?

thank you very much in advance.

1 Accepted Solution

Accepted Solutions

Bastien Migette
Cisco Employee
Cisco Employee

Hi,

You can define multiple peers in the crypto map, see:

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/c5_72.html#wp2066090

You can as well define multiple tunels and let the routing protocol choose the best route.

Hope this help,

Bastien.

View solution in original post

1 Reply 1

Bastien Migette
Cisco Employee
Cisco Employee

Hi,

You can define multiple peers in the crypto map, see:

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/c5_72.html#wp2066090

You can as well define multiple tunels and let the routing protocol choose the best route.

Hope this help,

Bastien.