Yes then the best thing would be to forget HSRP just build another GRE tunnel to the 2nd router run EIGRP over the 2nd tunnel and let EIGRP take care of the fallback. You would have to permit GRE traffic from Spoke to the 2nd router in the crypto ACL.ASA failover would only track failure of interfaces connecting to the ASA
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...