Thank you Jorge. Also, anotehr quick quest does SSL VPN configs support backup SSL VPN server..? (the question may not make much sense though..:-)) Or the users has to aware of backup server url or ip to connect to secondary server incase of primary server not available..?
MS, when you say support backup ssl vpn server are you refering when using active/standby ASA's? , if so I would say ssl clients would have to reconnect, this is an educated guess, PLS let me know if I have misunderstood your question.
No Jorge, I undestand SSL vpn supports Active/Standby. But lets say if I have 2 SSL VPN servers at 2 different physical locations for DR purpose. Incase the primary https://server1 is unreachable, then is there anyway user automatically gets redirected to 2nd server (still typing http://server1) to connect to network..? or does this needs dynamic dns..? Iam asking this, as using VPN client s/w on laptops, we can define the backup server and so s/w aware to go to 2nd server without user intervention. Just wondering such kind is avail in SSL VPN as well.
MS, I see your point .. that would most likely be inplemented with some sort of dynamic DNS as you indicated . As far as I know ASA being your SSL server does not have that dynamic function.
In your scenario you will have two different ISPs IPblocks at different locations, there is an interesting article I saved while ago that talks about multiple address records associated with a single domain name, dynamic dns.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in HA
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationCo...
I am currently unable to specify "crypto keyring" command when configuring VPN connection on my cisco 2901 router.
The following licenses have been activated on my router :