cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
252
Views
0
Helpful
1
Replies

ASA 5510 2 ISP's & VPN

jdrose_2
Level 1
Level 1

I have an ASA 5510 in our primary location with all inbound / outbound traffic directed through it to our primary ISP. I now have 5 systems in a remote datacenter behind a 2nd ASA 5510 and a 2nd WAN link from a 2nd ISP (the data center). I want to use this 2nd ISP for site to site communication between our main office and remote datacenter only (through a site to site VPN between the 2 ASA's) and have all other internet traffic go through our primary ISP but am stuck on how to configure it. Has anyone tried or seen anything similar? Thanks!

1 Reply 1

Collin Clark
VIP Alumni
VIP Alumni

You can tunnel all traffic (0.0.0.0 0.0.0.0) and use the same-security-traffic permit intra-interface command on the main ASA to then allow internet access for the remote DC.

Hope that helps.

Review Cisco Networking products for a $25 gift card