My network setup is like below.
Internal Router ------> ASA -------> Internet Router ------> ISP Router
Right now i have site to site connections established on a VPN 3005 concentrator. I want to migrate these to VTI interfaces so that i can run a routing protocol and use Qos.
The concentrator is not capable of doing this. I tried the ASA SDM to configure a site to site VPN and it will not do what i want it to. My question is.
Is there away i can establish a VTI VPN on our external router and have it navigate thru our firewall or punch a hole in the firewall thru to the internal router.
What way would someone recommend i go for the best security but i have to use a VTI Tunnel.
Thanks for help.
Robert
Internal Router ------> ASA -------> Internet Router ------> ISP Router
Right now i have site to site connections established on a VPN 3005 concentrator. I want to migrate these to VTI interfaces so that i can run a routing protocol and use Qos.
The concentrator is not capable of doing this. I tried the ASA SDM to configure a site to site VPN and it will not do what i want it to. My question is.
Is there away i can establish a VTI VPN on our external router and have it navigate thru our firewall or punch a hole in the firewall thru to the internal router.
What way would someone recommend i go for the best security but i have to use a VTI Tunnel.
Thanks for help.
Robert