Solved

mpls network / asa 5510 / ipsec

Posted on 2011-03-08
6
588 Views
Last Modified: 2012-05-11
Hi folks
I have an mpls circuit with out internet access.  I also have an ASA sitting behind the mpls router.

What do I need to do to in order to establish an IPSEC tunnel to another vendor?

Thanks,

0
Comment
Question by:vburshteyn
  • 3
  • 2
6 Comments
 
LVL 33

Expert Comment

by:MikeKane
ID: 35072023
If all you are looking for is a basic site to site setup, then Cisco has the HOWTO right here: http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080950890.shtml
0
 
LVL 29

Expert Comment

by:pwindell
ID: 35072144
If the MPLS does not have Internet access then there is not much point in the ASA being there.

Is the other vendor accessible via the same private non-Internet MPLS Service?
0
 

Author Comment

by:vburshteyn
ID: 35072158
nope.

I guess for what i need i should get an outside ds3 line this way ill get an outside IP for my ASA.
0
VMware Disaster Recovery and Data Protection

In this expert guide, you’ll learn about the components of a Modern Data Center. You will use cases for the value-added capabilities of Veeam®, including combining backup and replication for VMware disaster recovery and using replication for data center migration.

 
LVL 29

Expert Comment

by:pwindell
ID: 35072173
That's correct.  It would also be good if they had the same ASA on their end to simplify the IPSec setup,..although it may still be doable even if you mix brands.
0
 

Author Comment

by:vburshteyn
ID: 35072186
its a same model ASA sitting 5 feet from the one in question.
0
 
LVL 29

Accepted Solution

by:
pwindell earned 500 total points
ID: 35072195
If you do that then to keep the routing scheme synchronous the MPLS Router or some other LAN Router would be the Default Gateway for the LAN and likewise be the central routing "decision maker" for the LAN,...then it would only need  a Static Route on it that told it to use your ASA as he gateway to the other vendor's system.
0

Featured Post

DevOps Toolchain Recommendations

Read this Gartner Research Note and discover how your IT organization can automate and optimize DevOps processes using a toolchain architecture.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question