Two offices connected with VPN with redundant ISP and ASA's

Unanswered Question
Dec 28th, 2008

Hello,

I have the following schemma with ASA's 5505 connected to two ISP's.

------MainVPN--------

LAN1--ASA1 ASA2---LAN2

------backupVPN------

My question is how can I configure the routing so that when MainVPN is down, all traffic goes trough the backupVPN?

THe schemma that I want is similar to this

but adding VPN's:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00806e880b.shtml

I attach the Routing and VPN structure of my shcemma.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
drolemc Fri, 01/02/2009 - 10:01

Your configuration seems to work good. Once again verify your configuration. Make sure If the tracked route is removed unnecessarily, ensure that your monitoring target is always available to receive echo requests. In addition, ensure that the state of your monitoring target (that is, whether or not the target is reachable) is closely tied to the state of the primary ISP connection.

Actions

This Discussion