Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
New Member

Particular Dual ISP

                   Hi,

Today the customer is using Internet network for establishing a VPN tunnel with a foreign agency

but now that they have added an MPLS network,

So they would like to use the MPLS network to reach the foreign agency and in case of failure

they will reuse the Internet network for the VPN tunnel.

Moreover they also want to use a Dual ISP for Internet access.

The solution is implemented on an HA  cluster of 2 x ASA  running 8.4.2.

route outside 0.0.0.0 0.0.0.0 <router internet isp1> 1

I have read with attention the document "Redundant or Backup ISP links Configuration Example".

For Internet access through both ISP's it seems to be OK

Can i use another Track ID to manage communication with the foreign agency

using the Intranet interface on the ASA as the main access and the outside 1 or 2 interfaces for the backup.

Is it realistic or do i miss sonmething.

PS: i have attached the design of what i am going to implement.

Best regards.

Andre

1 REPLY

Particular Dual ISP

Hello Andre,

So you mean

Send the traffic via A and if A fails go to B and if B fails go to C?

All of this via SLA monitoring ?

Yeah, I do not see why it should not work.

It is supported

For more information about Core and Security Networking follow my website at http://laguiadelnetworking.com

Any question contact me at jcarvaja@laguiadelnetworking.com

Cheers,

Julio Carvajal Segura

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
88
Views
0
Helpful
1
Replies
CreatePlease to create content