Tuesday, January 15, 2019

Cisco ASA - two vpn tunnels to same remote host

So here's the situation. I have multiple internet connections coming into an ASA. On one of them I have a vpn tunnel to a remote host.

Because one of our internet connections occasionally goes down for maintenance, and when it does the other is usually up, I need to make sure that there is a connection to that remote host available at all times.

The plan was to just bring up 2 tunnels on our ASA, one using each of our internet connections.

However, the ASA won't let me create one, stating that there's already a connection to that host. Even if the local interface is different.

I did some googling and the answers are generally "why would you want to do that?" with no real answer.

Is there a way around this or a better way to do it?



No comments:

Post a Comment