cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1455
Views
0
Helpful
2
Replies

How to Setup Redundant VPN Tunnels

nigelb
Level 1
Level 1

Hi

Can someone please advise me how to configure the following scenario.

L2L VPN from Network A to Network B over the Internet (both sites PIX), BUT with a 2nd ISP connection at Site A as alternate route/tunnel (to Site B also)

NetA

|

PIX A

| |

ISP1 ISP2

INTERNET

|

ISP

|

PIXB

|

NETB

Thanks

2 Replies 2

dsweeny
Level 3
Level 3

Refer to the following documents

Configuring PIX to PIX to PIX IPSec Fully Meshed

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00800a2cce.shtml

ASA/PIX 7.x: Redundant or Backup ISP Links Configuration Example

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00806e880b.shtml

Thanks for the reply.

In my scenario however, what I'm looking to do is have an IPSec tunnel between two PIX's...BUT one PIX will have 2 external I/F's with different IP's.

Is this possible using the 'redundant ISP method'? do I need to create two VPN tunnels with same encryption domain?

The request has arisen because the customers' primary Internet connection is unreliable.

Any thoughts welcome...Thanks