- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
CP Checkmates,!
The setup we have in place for SITE to SITE VPN:
Star community has 2 CP Clusters defined and 1 ASA object under satellite. MEP has enabled hence the failover works fine should one of the CPs become unresponsive.
SMS/Gateways are at R80.30.
Requirement:
We need to add redundancy on the peer side as well. (Basically, one more peer needs to be added along with ASA-Main, which would be ASA-DR.)
Problem:
When we add ASA-DR, along with ASA-Main, both tunnels come up and cause an outage.
For now, we have removed the ASA-DR to keep the setup in a working state.
I am looking for any possible solutions, please.
Thanks,
YM
Is there anyone who could shed a light on this topic?
I’m not 100% on if this would work but am chiming in since there aren’t any responses yet.
In my head it seems like a route based VPN could work for this setup.
I would imagine you could set priorities on the routes for relevant traffic to prefer the primary peer.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY