cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5511
Views
0
Helpful
5
Replies

Site-to-Site VPN Using Router and ASA

karl_009
Level 1
Level 1

Hi,

I have a Cisco 1812 router which is setup for remote access VPN using IPSec (Cisco VPN Client), my question is can I configure a Cisco ASA 5505 to connect to the router as a site-to-site VPN.

Thanks

Karl

1 Accepted Solution

Accepted Solutions

Dear Karl,

Yor are right, in this case either you can created a site to site vpn tunnel between the devices or you can setup your ASA as a VPN hardware client. ie; Easy VPN.

For the same you can refer the below document.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00808a61f4.shtml

Regards,

Shijo.

View solution in original post

5 Replies 5

shijomon scaria
Level 1
Level 1

Dear Karl,

Yes, you can create at Site-to-Site VPN tunnel between the devices. Please refer the below link.

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00805e8c80.shtml#diag

Regards,

Shijo.

Hi Shijo,

Thanks for document very helpful, one last question?

Since I already have the router setup for remote access for end users to VPN into the local LAN can I use the existing setup on the router, an just configure the ASA to connect to the router.

I know on routers you can setup an Easy VPN Remote which connects to an Easy VPN Server which is what I have setup, so the ASA should be able to do the same would you agree?

Many Thanks

Karl

Dear Karl,

Yor are right, in this case either you can created a site to site vpn tunnel between the devices or you can setup your ASA as a VPN hardware client. ie; Easy VPN.

For the same you can refer the below document.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00808a61f4.shtml

Regards,

Shijo.

Thanks for this just what was required.

As mentioned by Shijo, it is no problem to do that. Just make sure that the crypto-map-sequence that you use to apply your dynamic crypto-map is always higher then the sequences you use for site-to-site. That's a config-mistake I have seen more then once.

-- 
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni