Can 2 IPSec profiles attach to a WAN interface crypto-map?
using IOS firewall on a 2811, management wants to have VPN peer redundancy on the 2811 remote office two different regional 3030 concentrators. The remote 2811 has a current VPN LAN-to-LAN with one of the 3030s. There will be two separate Ethernet LAN connections and one Ethernet WAN connection to the ISP edge router. Question is how would one configure the 2811 to support two different VPN peers with one LAN going to one VPN peer and the other LAN going to the other VPN peer?
Re: Can 2 IPSec profiles attach to a WAN interface crypto-map?
Jon, change of plan, we're going to seperate the remote site's two LANs and assign one to one IPSec peer profile and the other LAN to the other IPSec peer.. so, there'll be just one crypto-map -w- two crypto-map ID policies... something like - crypto-map cap 10 & crypto cap 20 , thanks
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...