Tag-Based IPsec VPN Failover

PhilipDAth
Kind of a big deal
Kind of a big deal

Tag-Based IPsec VPN Failover

I'm plagurising this from @AdamS, so thanks for the info.

 

Cisco Meraki has published a new document on how to do non-Meraki VPN failover.

https://documentation.meraki.com/MX/Site-to-site_VPN/Tag-Based_IPsec_VPN_Failover

 

Basically it uses a script so that if the primary VPN connection goes down it updates the connection to use a backup VPN.

2 Replies 2
jdsilva
Kind of a big deal

I think they talked about this on the Partner webinar in April? Neat trick for sure.

Owen
Getting noticed

So they've tried to replicate the functionality of a routing protocol with a script that runs at long time intervals? Why not just allow BGP on MX devices, prepend on the backup path and be done with it? This way you could also do active/active tunnels if needed by fiddling with BGP parameters AND interoperate with all other network devices.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels