Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

VPN IPsec fail over on Cisco ASA 5512 x and 5505?

Dear all, 

 

Need your help!

 

Please kindly see in the attach file, i would like to configure VPN with fail over connection from HQ to Branches. At HQ we are using 2 Wan connection and branches using 1 Wan connection,.

Could you let me know command to configure VPN with failover connection ?

 

Best Regards,

Rechard

3 REPLIES

Hi Rechard, On HQ , you will

Hi Rechard,

 

On HQ , you will use apply crypto map on both the WAN interfaces  and on Branch side , you will set the peers under crypto map as "set peer <Primary_ IP>  <Secondary_IP>" along with tunnel-group created for both the peers.

Here are the documents that will prove helpful in configuring VPN failover:

http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/70559-pix-dual-isp.html

https://supportforums.cisco.com/community/netpro/security/vpn/blog/2011/04/25/ipsec-vpn-redundancy-failover-over-redundant-isp-links

Regards,
Dinesh Moudgil

P.S. Please rate helpful posts.

New Member

Dear Dinesh, Nice to see your

Dear Dinesh,

 

Nice to see your answer!

Let me configure on this and after finish i will rate for you .

 

Appreciate for your support.

 

 

Hi Rechard, Here is the link

Hi Rechard,

 

Here is the link which describes your topology. You can configure the VPN settings as per the document and you can have the redundant VPN @ HQ & Branches can access HQ with backup connection.

 

http://networkology.net/2013/03/08/site-to-site-vpn-with-dual-isp-for-backup-redundancy/

 

I have done the similar scenario in my Lab and it is working.

 

Regards

Karthik

154
Views
0
Helpful
3
Replies