I have a task to do.
Two routers 871 are working connected through tunnel using simple vpn configuration.
On the second router now is 2 ISP connections, one as a backup.
How to configure routers to automatically switch VPN tunnel in a time when one of the ISP is going down??
Outside IP: 220.127.116.11
Outside IP ISP1: 18.104.22.168
Outside IP ISP2: 22.214.171.124 - as backup
For now I made configuration with route-map for every ISP to automatically switch outside port.
Configured is 2 tunnels but the second one do not want to work.
What to do next??
On the router that has both ISP connections, the tunnel will always establish using the primary link.
If you clear the tunnel, but the primary link is still active, then it will again establish the tunnel using the primary link.
If the second link becomes active and you clear the tunnel, then the tunnel should establish using the secondary link.
One way to check what's happening is using:
debug cry isa --> for phase 1 negotiations
debug cry ipsec --> for phase 2