[c-nsp] highly available ipsec vpn

harbor235 harbor235 at gmail.com
Thu Feb 8 17:34:07 EST 2018


I am looking to implement a highly available IPSEC route based VPN.
Traditionally I would bring up multiple tunnels with multiple BGP peers in
a dual router setup.

IPSEC HSRP design appears to be the flavor of the day, failover times
appear to be lengthy compared to failover times via BGP. IS anyone using
the HSRP HA setup? Are your experiences good or bad? Has the BGP route
based IPSEC VPN design fallen from grace?


Mike


More information about the cisco-nsp mailing list