Link to home
Start Free TrialLog in
Avatar of fyoumb
fyoumb

asked on

Dynamic-to-Static L2L IPSec VPN

Hi,
 
I've implemented a Dynamic to Static Site-to-Site IPSec VPN between a ASA5505 on a vessel and the headquarters. Now, this solution doesn't allow the HQ to initiate the IPsec connection.  
 
In the Vessel network, there is a router behind the ASA5505. I heard that if I want to keep the tunnel up, so that HQ clients can initiate traffic to remote clients through the tunnel, I'd need to run IP SLA icmp probes on the router behind the ASA.
 
Could someone explain how to implement it?
 
Thanks for your help.

Frank
ASKER CERTIFIED SOLUTION
Avatar of Jody Lemoine
Jody Lemoine
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of fyoumb
fyoumb

ASKER

Thanks!!!

Frank