Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

IPSec S2S VPN redundant path design advice

Hello,

my task is to create IPSec S2S VPN with other company, where the primary line would be L3VPN and ISDN as a backup. I have 3825, and the other side has an old Pix which is behind their WAN router. On my side, VPN should be implemented at my WAN router (picture below). My question is what is right design for this situation (best practice), whether to use physical interfaces for tunnel endpoint, loopback interface, or maybe GRE tunnel? The idea is to track route with IP SLA, pinging their WAN router and i want to maintain VPN when operating on backup ISDN line. What are advantages/disadvantages of those approaches?

Thanks in advance.

Everyone's tags (1)
118
Views
0
Helpful
0
Replies
CreatePlease to create content