ASA active/active?

From: Tony Singh <mothafungla_at_gmail.com>
Date: Fri, 21 Dec 2012 23:16:49 +0000

Guys trying to lab the following...

I have the following topology:

Site A Site B
CE1----------------PE------------CE2
| |
| |
SW1-------------trunk-----------SW2
| |
| |
ASA1 ASA2

3 corporate routes preferred from CE1 and 1 corporate route preferred from CE2 ok I use BGP for this

But I have to send all ip traffic to the ASA's first
(behind the switches are server farms which are the destinations for the 4 routes above)

Would I create transits vlans for all this traffic + run HSRP right so that every failure scenario is accounted for?

So traffic from CE would go CE>ASA>SW>Server , not sure on the return path? i.e Server>SW>CE?

ASA's I believe can only run in active/active or active/standby and will not participate in HSRP right

If I set static routes on the CE's to point to the ASA's the policies would permit the traffic then a default route from the ASA's pointing to the VIP of the switch then to vlan server destination?

How would you do this, I'm confused need guidance

--
BR
Tony
Sent from my iPad
Blogs and organic groups at http://www.ccie.net
Received on Fri Dec 21 2012 - 23:16:49 ART

This archive was generated by hypermail 2.2.0 : Tue Jan 01 2013 - 09:36:53 ART