Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Terminating dynamic vpns on asa 5510


We are interested in our comapny to implement dynamic vpns because we have many remote branches (20 of them).

At the moment we have site to site vpns with all the remote sites ( start topology ). The remote sites are equiped with asa 5510 which terminates the vpn.

Is the asa capable of implementing dynamic vpn ?

or we need to install a 2800 router in front?

If we terminate the vpns on the 2800 router then traffic from the router to asa will not be encrypted, hence it is a security concern!!

What is your advice?

Thasnk you in advance!!!

Cisco Employee

Re: Terminating dynamic vpns on asa 5510


Yes, it is possible to possible to terminate dynamic VPN on the ASA. Please refer the below URL for details:



** Please rate all helpful posts **

New Member

Re: Terminating dynamic vpns on asa 5510

We need to initiate traffic between remote sites as well, such as telephone calls between 2 remote sites.

In the urls you sent me it is mentioned that:

"The PIX can initiate connections to the router, but the router cannot initiate connections to the PIX".

With this senario are we able to do that ?

New Member

Re: Terminating dynamic vpns on asa 5510

These examples (like all other which I found) are for ASA 7.x; which looks very different from the current (8.0) software...

If someone has gotten this to work on 8.0 I am more then interested...

Best regards,