[c-nsp] Multi-homed ASA with a virtual interface for IPSec termination

Nick Hilliard nick at foobar.org
Tue May 29 08:47:14 EDT 2018


Jason Lixfeld wrote on 28/05/2018 22:36:
> If not, anything else that may do what I’m after?

Cisco ASA is very poor at handling dynamic routing, to the point that 
any requirement that I have these days for firewalls and BGP will 
automatically rule out ASA as a platform.  It still doesn't support 
Loopback interfaces, as of 9.x.

Juniper SRX handles this end of things a good deal better, imho.

Nick


More information about the cisco-nsp mailing list