site to site connectivity sizing

Unanswered Question
Mar 14th, 2008
User Badges:

Dear all,

i'm planning for site to site connectivity between my hq and 20 branch offices.

There will be 6 to 8 users in each branch.

hq side im planning for a leased line, i will get 6 public IP addresses from isp. with ASA 5520 with content security module.any suggestion on this part?

and for 20 branches i will be getting ADSL line(1mb). is it possible to configure dyndns in branch side if i use a 5505 with ASA 8.0 software.

any suggestion on this solution.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
trustcisco Tue, 03/18/2008 - 04:45
User Badges:

Yes you can configure DDNS in 5505. But if you want to create site-to-site IPSec VPNs you must use Static IPs.

It has been discussed here before about asa and ddns VPN. Although some guys say that using CLI you can configure as peer address the ddns name or hostname if you like for me it didn't work.

Patrick Laidlaw Tue, 04/22/2008 - 14:53
User Badges:
  • Gold, 750 points or more

If you using all ASA's you could use DMVPN. It would allow you to set everyone to talk to your central site and you central site will tell all your other ASA's to automatically talk to each other.

ryancolson Wed, 01/07/2009 - 15:12
User Badges:

I do not believe the ASAs support gre/nrhp/dmvpn(i wish they did). As far as I know DMVPN is a router only technology.


This Discussion