10-27-2025 02:01 PM
We have a Multi context FTD3105 running ASA code version 9.22 and trying to build a site to site VPN with Azure . Can you please provide advice on the following ?
1 ) While trying to build a ROUTE based site to site vpn I was unable to create the VTI then read that this was not possible on a FTD running ASA code . Can anyone confirm that ?
2) What would be the best to implemented inter context communication when the Azure site to site vpn traffic coming on the outside interface of Context A is destined to a network located in context B ?
Thank you
Solved! Go to Solution.
10-27-2025 02:09 PM
@HAT Route Based VPN's (VTI) are not supported with Multi context.
If Azure network needs to communicate with both contexts anyway, why run multi context? What not run a single context and then you can use a route based VPN?
10-27-2025 02:09 PM
@HAT Route Based VPN's (VTI) are not supported with Multi context.
If Azure network needs to communicate with both contexts anyway, why run multi context? What not run a single context and then you can use a route based VPN?
10-27-2025 02:29 PM
@Rob Ingram . Thanks for the confirmation . We have implemented multi context in the past in order to meet certain requirements . Now we would like to ensure that Azure traffic can reach the networks behind those contexts . For that I have created a new context where the VPN traffic will be terminating and would like to use it as a transit for getting to the other networks . I have read about routing VPN traffic through a layer 3 switch but would like to see other options that can achieve the same results .
Thanks in advance
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide