Thursday, June 20, 2019

Routing for remote sites over IPSEC VPNs

Hi all,

I am in the process of designing a network suitable for a Cisco CUCM system. We are a fully Cisco environment with multiple sites connected to each other via site to site VPNs over FTD (hub) and ASAs (spokes)

Site A (FTD - hub) has site to site VPNs to each other site which is fine for our current needs, however the Cisco VoiP phones need to be able to directly route to each other. The simple solution is mote site to site VPNs for each site but there are quite a few and this would be hard to manage. Any other options? Can I route all phone traffic through the hub? If so, how do I go about it.

Site A - 192.168.119.0/24 - Hub - Cisco FTD 6.2.3.4

Site B - 172.16.212.0/24 - Spoke - Cisco ASA 9.1.6

Site C - 172.16.213.0/25 - Spoke - Cisco ASA 9.1.6

Site D - 172.16.214.0/24 - Spoke - Cisco ASA 9.1.5

With the potential to add a further 10+ sites in future.

Thanks in advance for any and every reply.



No comments:

Post a Comment