Hi! I have read many documents about network design on SRND site, but I haven't read about ASA VPN design.
http://www.cisco.com/en/US/docs/solutions/Enterprise/WAN_and_MAN/IPSec_Over.html - all VPN terminates on routers
http://www.cisco.com/en/US/docs/solutions/Enterprise/Branch/E_B_SDC1.html - VPN terminates on routers, ASA are just firewall.
What is a right network design if I want to terminate VPN on ASA?