Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

2 ISP link failover in ASA 5505

Hi,

I have ASA 5505, want to configure the 2 ISP link Tata and Airtel with failover.

I want to configure the WebVPN with failover, so that user don't need to change the public address when one link goes down.

thanks with regards

Ashish Kumar

5 REPLIES

2 ISP link failover in ASA 5505

This won't work because when Failover accurs (e.g.  Tata down) you won't be able to reach this IP

Michael

Please rate all helpful posts

Michael Please rate all helpful posts
New Member

2 ISP link failover in ASA 5505

Hi michael,

First of thanks for reply.

Can we do it by public certificate or DNS entry e.g. both ISP Public ip address entry will be in DNS and user will hit particular DNS name. You r right that once link down so user will disconnect but when he will retry then he will connect via another link.

Is it possible??

Ashish

2 ISP link failover in ASA 5505

You could try to enable WebVPN on both outside interfaces and do DNS roundrobin, perhaps this works (never tested).

Michael

Please rate all helpful posts

Michael Please rate all helpful posts
New Member

2 ISP link failover in ASA 5505

can u share any document.

thanks

Ashish

2 ISP link failover in ASA 5505

In ASDM you can select the interfaces where WebVPN is activated, there you check both outside IF's.

In DNS, when your name is vpn.example.com, you set A records for both public IPs

Michael

Please rate all helpful posts

Michael Please rate all helpful posts
137
Views
0
Helpful
5
Replies