09-08-2009 02:16 AM - edited 03-11-2019 09:13 AM
Hey guys,
I have two 6500's with FWSM's. The 6500's have a VPN connection from each to a PIX for VPN between two sites.
The route out of the FWSM is the HSRP of the two 6500's so while both connections are up there's no problem. However, if one VPN connection goes down then although the other one is there it isn't used because the traffic is still sent to the other switch. The problem is that sometimes the VPN connection goes but the actual interface is still up.
Is there any way for me to get HSRP to track the VPN connection or a better way of doing things?
Cheers,
Anthony
10-01-2009 11:46 AM
Hey,
From your mail I figured the command was a global one so I've been trying the following and this is what I see:
testsw1(config)#ip s?
sap scp security slb source
source-route ssh sticky-arp subnet-zero
Am I missing something?
Thanks,
Anthony
10-01-2009 11:49 AM
Anthony
Just out of interest could you post output of
testsw1(config)# ip r?
Jon
10-01-2009 11:54 AM
ok, no probs:
testsw1(config)#ip r?
radius rcmd reflexive-list route rsvp
rtcp rtp
Anthony
10-01-2009 12:05 PM
Anthony
SXF supports rtr which is the predecessor of ip sla and supports most of the functionality -
http://www.cisco.com/en/US/docs/ios/ipsla/command/reference/sla_03.html#wp1023731
If you actually want to use IP SLA you need to look at 12.2SXH but then you also need to make sure SXH still supports all your other needed features.
Jon
10-01-2009 12:10 PM
ok, thanks - I'll update the IOS and let you know how it goes...
Cheers for the help!
Anthony
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide