cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
638
Views
0
Helpful
5
Replies

Need to redistribute the VPN remote LAN segments to inside via ospf

Ramesh M
Level 1
Level 1

Hi,

We have ASA firewall(8.6 ver) at one end and other end is fortigate firewall. Behind ASA we have Local LAN segments(MPLS) and advertised via OSPF.

And we have a VPN between ASA and fortigate

Now My requirement is I want to redistribute the Remote LAN segment (Fortigate internal segment)  to the ASA internal segments(MPLS) via ospf.

Kindly suggest on the same,.

Regards / Ramesh M

5 Replies 5

Marvin Rhoads
Hall of Fame
Hall of Fame

Reverse Route Injection (RRI) should do the job for you.

Please refer to this configuration example and this related thread.

Could you please provide the commands needs to execute on ASA

You add "set reverse-route" in your cryptomap section as noted in the configuration example link I provided above.

If you read it carefully you will see it directly above the notation:

      !--- Command to enable RRI

hi,

Ok but where should I point the remote LAN segment towards ospf.

Requirement is ASA wants redistribute the remote LAN segment( fortigate Local Segment) to its (ASA) internal ospf.

Ramesh M

Hi,

Thanks its working...

Regards/Ramesh M