06-10-2009 04:24 AM - edited 02-21-2020 03:30 AM
We are switching providers & need to know if I can route/NAT both providers at the same time.
By having both providers connected on different interfaces it would give me the ability to test the new ISP & would give me the flexibility to make changes to DNS.(we house several websites on our DMZ interface on the firewall)
Interfaces are
Outside (current ISP)
Outside2 (new ISP)
DMZ (Web servers)
Can anyone provide white papers.
Thanks in advance
06-11-2009 02:19 AM
The problem is that the Cisco ASA does not support multiple default routes pointing out two separate interfaces. Neither does it support PBR. You can have a active/backup configuration tough:
Regards
Farrukh
06-11-2009 03:13 AM
Could I have two ISP's coming in but going out through one ISP ?
06-11-2009 06:53 AM
As far as routing is concerned, yes. But the problem is that the NAT function (at least the static) is bi-directional. So traffic from the internal source will be translated to the 'passive' ISPs mapped IP (public IP). But it will be routed out the primary ISP. Whether this would work, depends on how your ISP is configured (Access-lists etc). Its worth a try tough.
Regards
Farrukh
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: