cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
397
Views
5
Helpful
4
Replies

VPN on non default route interface

mikedelafield
Level 1
Level 1

If I setup a VPN on an ASA interface which is not the default route will it establish?

The interface is the backup default route (using floating static and tracking) but not the default.

Basically this is what I want that the VPN only comes up in the event of failure of primary route and transfer to the backup route.

But i'm worried that the VPN could come up anyway. Which would be bad!

4 Replies 4

kwillacey
Level 3
Level 3

It depends on how the other end is configured. If it can specify which peer address is primary/default then it will only try the other peer if the first peer is unreachable, hth.

The primary connection is a layer 2 direct fibre link and in the event of failure of this link i want a VPN tunnel to establish over ADSL to the same site

However I am concerned the ADSL tunnel will establish automatically and take precedence as the main route. Which of course i don't want

Is this possible?

It is possible the other VPN will only be established over the ADSL if the primary link fails.

it is possible???

i assume this is because the VPN cannot establish out because its interface is not the default internet route? (until failure causes the floating static to pop up that is)

?

thanks again by the way

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: