Link to home
Start Free TrialLog in
Avatar of bamsi
bamsiFlag for Philippines

asked on

directional encryption of VPN traffic on Cisco ASA

Im trying to design a new solution where I have 2 eggress interfaces. DMZ1 is an MPLS circuit where i have direct connection to client subnet 33.0.0.0 which is working fine. We will be setting up a new VPN tunnel going via outside the ASA as a backup path using IPSec VPN using a floating static route.

My question is would the ASA encrypt the traffic first before pushing it to DMZ1 or would it only encrypt traffic if DMZ1 fails and the outside path is voted as the new best route?
ASKER CERTIFIED SOLUTION
Avatar of bamsi
bamsi
Flag of Philippines image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial