Bind 2 separate IPSEC tunnels to separate ISPs

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Bind 2 separate IPSEC tunnels to separate ISPs

L0 Member

I am trying to setup a separate IPSEC tunnel to a new ISP while keeping the rest on the old ISP.  I am doing this as a test.  My issue is lack of connection.  The message I get from the logs is that it try's the connection then I get another saying its deleting possible stale.  Is there something I am missing?   Both the IKE and Crypto are setup correctly on both ends and there is no issue with the passkey.

 

Any help would be greatly appreciated.  Thank you! 

1 REPLY 1

Cyber Elite
Cyber Elite

Hello there.

Sounds like you are going to have routing issues.

 

My suggestion would be to create a PBF rule, (policy based forwarding) so that this new VPN will be go over the 2nd ISP.

PBF rules supersede the routing table, so this would resolve any routing issues.

 

Help the community: Like helpful comments and mark solutions
  • 1791 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!