Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

Equivalent of Set Peer on ASA's - Alternate site L2L tunnel

     Hi,

On the ISR's you can specify more than one peer (set peer) for an IPSEC tunnel and in the event the one peer (default) goes down the second one will be tried.

I was just wondering if the same thing is possible on an ASA? I would like a branch ASA to try the primary site and in the event the primary site is unavailable try to establish a tunnel to the secondary site. This is down without HSRP as the secondary site may be in a different country. DPD and RRI would also be something I wouls like to do at the ASA, so the routes can be dynamically re-injected into OSPF.

Thanks in advance,

Bob James

1 ACCEPTED SOLUTION

Accepted Solutions

Re: Equivalent of Set Peer on ASA's - Alternate site L2L tunnel

Same thing.


Federico.

3 REPLIES

Re: Equivalent of Set Peer on ASA's - Alternate site L2L tunnel

Hi Bob,

The same exact thing is possible in ASAs.

crypto map mymap 10 set peer x.x.x.x y.y.y.y

Federico.

Community Member

Re: Equivalent of Set Peer on ASA's - Alternate site L2L tunnel

Thank you, what about DPD and RRI?

Thanks again

Re: Equivalent of Set Peer on ASA's - Alternate site L2L tunnel

Same thing.


Federico.

191
Views
0
Helpful
3
Replies
CreatePlease to create content