cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
607
Views
0
Helpful
2
Replies

Site to Site VPN Suggestion

jikuma0064
Level 1
Level 1

Hi Guys,

Need advice on Cisco ASA 5585-S60 site to site IPSEC VPN with 200 Peers , looking for the best practice design.

Static or Dynamic Crytpo map - which on would be best , FYI  authentication is Certificate based with IKEv2 policy.

Any suggestion or url help is appreciated ,this one is my 1st VPN call looking for suggestion.

Thanks

JK

2 Replies 2

JP Miranda Z
Cisco Employee
Cisco Employee

Hi jikuma006,

You can check the following configuration guides:

http://www.cisco.com/c/en/us/support/docs/security-vpn/ipsec-negotiation-ike-protocols/117337-config-asa-router-00.html

http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118652-configure-asa-00.html

http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/113597-ptn-113597.html#config

Hope this info helps!!

Rate if helps you!! 

-JP-

Thanks alot JP for sharing link.