08-26-2009 11:58 PM
If I setup a VPN on an ASA interface which is not the default route will it establish?
The interface is the backup default route (using floating static and tracking) but not the default.
Basically this is what I want that the VPN only comes up in the event of failure of primary route and transfer to the backup route.
But i'm worried that the VPN could come up anyway. Which would be bad!
08-27-2009 10:43 AM
It depends on how the other end is configured. If it can specify which peer address is primary/default then it will only try the other peer if the first peer is unreachable, hth.
08-28-2009 05:06 AM
The primary connection is a layer 2 direct fibre link and in the event of failure of this link i want a VPN tunnel to establish over ADSL to the same site
However I am concerned the ADSL tunnel will establish automatically and take precedence as the main route. Which of course i don't want
Is this possible?
08-28-2009 05:39 AM
It is possible the other VPN will only be established over the ADSL if the primary link fails.
08-28-2009 05:47 AM
it is possible???
i assume this is because the VPN cannot establish out because its interface is not the default internet route? (until failure causes the floating static to pop up that is)
?
thanks again by the way
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: