04-14-2020 05:13 PM - edited 04-14-2020 05:14 PM
Hello folks. Currently have a 2110 (ASA code) VPN standalone. Thinking about adding another VPN 2110 with the same configs. Is it possible to configure VPN Load-balancing and also make them into an Active/Standby pair? I can't find much documentation except for this document I was told about in another thread about HA pairing the VPNs.
Option 2b discusses a possibility of doing Active/Standby with VPN load-balancing on 2-10 ASAs, but it does not give any configuration examples or any further detail. Not sure if i can fully validate this works just through this article. So I was wondering if anyone else has had a similar setup that worked.
Solved! Go to Solution.
04-16-2020 09:33 PM
04-14-2020 09:35 PM
04-16-2020 10:33 AM
correct, I'm using ASA code.
let's say I only configure vpn load-balancing. If the master member goes down, the secondary will pick up the connections from there on correct? so in some ways it provides a little redundancy?
04-16-2020 05:26 PM
04-16-2020 08:52 PM - edited 04-16-2020 08:53 PM
Thank you. But I think what you are saying is a config option with more than 2 physical firewalls. I only have a total of 2 that I can use. So I'm asking if I have only a total of 2 physical firewalls and I configure VPN LB between them, I still get redundancy correct? If Master goes down, the second will pick up the connections?
04-16-2020 09:33 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide