Failover and load balance w/ 1700's and vpn 3000

Unanswered Question
Sep 12th, 2005
User Badges:

I have remote sites with Cisco 1711's currently using ezvpn and reverse injection routes to establish a connection with a Cisco 3000 VPN Concentrator in our primary hub.

I have added another Cisco 3000 VPN Concentrator to our secondary hub.

What I would like to do is to setup the 1711's to be load balanced between the two concentrators.

Also, if one concentrator fails then the 1711's will create a tunnel to the second concentrator and use that until the primary is back up.

Can this be done? Any whitepapers that illustrate this? Thanks!

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
ewattnem Tue, 09/13/2005 - 06:13
User Badges:

Thanks! The whitepaper was perfect. Does it matter that the VPN concentrators sit on different LANs?

attrgautam Wed, 09/14/2005 - 22:30
User Badges:
  • Silver, 250 points or more

That should not be a concern at all as RRI and DPD are specific to a destination. However your routing protocol if any you will have to extend it to properly for the fallback


This Discussion