cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
311
Views
0
Helpful
3
Replies

Terminating dynamic vpns on asa 5510

michalis1234
Level 1
Level 1

Hello,

We are interested in our comapny to implement dynamic vpns because we have many remote branches (20 of them).

At the moment we have site to site vpns with all the remote sites ( start topology ). The remote sites are equiped with asa 5510 which terminates the vpn.

Is the asa capable of implementing dynamic vpn ?

or we need to install a 2800 router in front?

If we terminate the vpns on the 2800 router then traffic from the router to asa will not be encrypted, hence it is a security concern!!

What is your advice?

Thasnk you in advance!!!

3 Replies 3

ajagadee
Cisco Employee
Cisco Employee

Michalis,

Yes, it is possible to possible to terminate dynamic VPN on the ASA. Please refer the below URL for details:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807ea936.shtml

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807fbdc8.shtml

Regards,

Arul

** Please rate all helpful posts **

We need to initiate traffic between remote sites as well, such as telephone calls between 2 remote sites.

In the urls you sent me it is mentioned that:

"The PIX can initiate connections to the router, but the router cannot initiate connections to the PIX".

With this senario are we able to do that ?

These examples (like all other which I found) are for ASA 7.x; which looks very different from the current (8.0) software...

If someone has gotten this to work on 8.0 I am more then interested...

Best regards,

Paul.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: