06-26-2024 09:36 AM
Can we configure Cisco AnyConnect VPN with backup VPN URL. Also suggest, can we use same Tunnel Group that we used for primary VPN URL (i.e. Tunnel Group : DUO-SSO)
06-26-2024 09:39 AM
@Vishal6 yes you can configure a backup URL, as per your other post https://community.cisco.com/t5/vpn/2-ips-on-same-vpn-url/td-p/5133818
Your backup URL would use the tunnel-group of another ASA/FTD with the same configuration as the primary URL, so configured for DUO-SSO.
06-26-2024 09:49 AM
In my other post I have ask to map two public ip address on same url, Now we have created another backup url on different public ip address. So can I do what I have ask in my previous post ?
06-26-2024 09:53 AM
@Vishal6 use a load balancer, which would distribute connections to the different outside IP address.
06-26-2024 09:55 AM
I need for redundancy, incase primary url goes down secondary will work.
06-26-2024 09:57 AM
@Vishal6 yes, the purpose of the backup url is to provide redundancy in case the primary is unavailable.
06-26-2024 10:01 AM
Do I need load balancer here ?. Also i need to configure another Tunnel Group that we used for secondary VPN URL taking the reference of primary tunnel (i.e. Tunnel Group : DUO-SSO) ?
06-26-2024 10:06 AM
FYI
Backup use when you have two WAN in one FW
Load balance use when you have two FW HA each have one WAN' no need load balancer.
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide