PIX alternate route via VPN?
Posted on 2007-04-09
I have a PIX 515e in front of a network. On the Inside interface is another router that leads to a downstream internal network connected via a point to point T1 line. The downstream network uses the T1 line and PIX to the to the Internet.
For redundancy, we have a second internet connection and a second firewall installed locally on the downstream network.
Because we have remote users VPN’ing into the PIX to get to the downstream network, if the T1 line goes down they no longer have access to company resources.
What I’d like to do is build a VPN from the PIX to the second firewall on the LAN and use that as an alternate route back to the LAN should the T1 go down (which is has several times lately).
First, is that possible, and if so can someone guide me on how to setup the PIX to choose a path on a tunnel vs one located down its inside interface?
Hope this makes sense.