PIX VPN failover to different data centers

Hello

I got 90 sites with PIX 501 6.4 (4) that connect to a centralized with pre-shared key and ip data center site.

We seek to set up another site and provide a VPN failover service.

Disaster, we would like the 501 to start to use the new Concentrator VPN sites.

I had a glance on the configuration guide and it doesn't look like we could use DNS for the exchange of traffic.

Is there some I could get the 501 to use the second VPN Service if the primary data center is taken out.

Concerning

John

It will work. It will use the second pair if the first is not available. I think this is mentioned in the guide configuration somewhere, but I'll have to look. Please rate if this can help.

card crypto newmap 10 set peer 1.1.1.1

map newmap 10 peer set 2.2.2.2 crypto

ISAKMP key * address 1.1.1.1 netmask 255.255.255.255

ISAKMP key * address 2.2.2.2 netmask 255.255.255.255

Tags: Cisco Security

Similar Questions

  • Using CLI, I would clone a virtual machine between different data centers

    Hello!!

    We have two data centers.

    We want to clone a virtual of DataCenter1 to DataCenter2 machine.

    We cannot with vSphere.

    Does anyone know how we can do this? any idea?

    Thank you very much

    Jose.

    Cloning is a feature of vCenter Server, not a host ESX (i). You need to connect to vCenter, that's why you get the error because this operation is not supported in a host ESX (i)

    =========================================================================

    William Lam

    VMware vExpert 2009,2010

    VMware VCP3, 4

    VMware VCAP4-DCA

    VMware scripts and resources at: http://www.virtuallyghetto.com/

    Twitter: @lamw

    repository scripts vGhetto

    Introduction to the vMA (tips/tricks)

    Getting started with vSphere SDK for Perl

    VMware Code Central - Scripts/code samples for developers and administrators

    VMware developer community

    If you find this information useful, please give points to "correct" or "useful".

  • You can cluster consistency of data centers?

    We currently lack two separate groups of coherence in the different data centers. One is prod the other DR.

    Would it not possible for nodes in each cluster to create a cluster that spans two data centers? Then in a failover scenario data would be available.

    I know that pulse of nodes of coherence between them to keep the members of the classes and there is a TTL parameter to determine the life of package. Would have nodes in data centres resulting in pulses being missed or TTLs killing packages?

    Did anyone had success with this?

    Performance of coherence is related to the latency between the nodes. Having a single distributed cluster on 2 data centers might harm performance (some wait times might have to be changed to prevent the nodes from A data center to claim another node in datacenter B is out of scope/possibly dead).

    When you lose the network connectivity between 2 data centers (note I do not say "If you lose connectivity". This WILL happen), you are welcome in the 'world of split brain', each half of the grid to believe the other is dead and who claim to be the 'master '. And so if you have a replicated data on N nodes, master backups are sent back in each data center, performance for a few minutes (the time of course depends on many parameters...). And of course the data will no longer be synchronized between 2 data centers. The quorum must be thought out and stuff like that...

    I could be wrong, but as far as I know I'd rather have 2 separate groups. I think 12.1 has new features to replicate the data the main grid to the Dominican Republic one, I was not through any new documentation.

  • Data centers and Resource Pools

    Can Lab Manager 3.0 to create pools of resources of servers and clusters in different data centers as defined by Virtual Center?

    I have two server groups in two different datacenters in Virtual Center, they have both permissions.  Yet, I cannot see the purpose of a data center data center but can see all hosts in ther other data center and assign them to pools of resources.

    When I move a host to a data center that is not working to the data center that works closely with Lab Manager, I am able to see the server and add it as a resource.  It's not ideal because I have the servers geographic location rather than function group.

    Any help would be greatly appreciated.

    http://pubs.VMware.com/labmanager3/install/LM_Installation_Guide_upgrade.6.11.html

    Lab Manager only supports a single data center.

  • I need to move a virtual machine on data centers in two different sites at the regional level.

    I'm under VMware Virtual Center 2.5 and ESX server 3.5. I have 2 data centers in two different sites at the regional level. If the material could not be more distinct. The virtual machine is a complicated web server while it takes move rather than be rebuilt. I've heard of process not VM to get there, but it would be nice to have a process of VMware.

    Can anyone offer some advice for a newbe?

    Al

    Good luck buddy!

  • Merger of two data centers separated with a different license.

    Due to the fusion of the IT departments, we have two data centers and vCenter servers.  The IP network is a network of flat class.  ISCSI are on two physically separate networks.

    Data Center 1 (DC1)

    vCenter Foundation 5.5

    3 hosts vSphere 5 Enterprise (6 cpu)

    1 series 6200 Equallogic SAN

    Data Center 2 (DC2)

    vCenter 5.1 Standard

    2 hosts vSphere 5 Enterprise (4 cpu)

    1 SAN Equallogic 4000 series

    We would like to:

    1. move the Standard of DC2 on DC1 and the license to the Foundation from DC1 to DC2 (Swap licenses)
    2. import of DC2 in vCenter on DC1 and then unmold on DC2 Foundation license.
    3. Finally have two data centers operating from DC1 vCenter running Standard Edition 5.5

    Is this possible at all?  How would we do this.

    Thanks in advance

    With licenses owned by the same company, the steps you mentioned should be ok.

    However, from a technical point of view, you can plan the migration according to the features you use. A few things you can do is to disable HA and DRS on DC2 environment before migrating the hosts to DC1 (just to avoid potential problems), and you can also make sure for example on DC2 data store names do not match the names on DC1 to avoid confusion after the migration.

    Unless the special functions are used on DC2 which must be supported before the migration, you can simply unplug the hosts of DC2 and add them to a DC1 with operational virtual machine. Host CPU licenses must move automatically with the hosts.

    André

    PS: TheSMO: licenses are based on major versions, i.e. 5.x., so there is no need to up - or their decommissioning in this case.

  • Can clone us VM on the data centers with downtime, is this possible in ESXi 5 and above?

    Can clone us VM on the data centers with downtime, is this possible in ESXi 5 and above?

    No, they can be in different subnets.

  • Heart rate between data centers

    Hello

    I made a VMware installation only when we have two datacenters with a host and a disk on each data center system, vi have 2 x 4 GB FC between data for the availability of the storage centers and we have 2 x 1 Gbit L2 connections between data (network, vmotion and HB) centers.

    Now my problem is pulsation HA making only redundant you normally just add two natachasery to the switch, but in my case I need to run my heart rate on two different VLANS to ensure that it also works on different connections between data centers.

    If I just add another service console and configure a new vlan with default gateway, dose anyone know if it will work?

    Daniel

    Hi Daniel,.

    Welcome to the forums.

    You can take a look at the following KB on the Service Console redundancy for VMware High Availability.

    It will be useful.

    Concerning

    Franck

  • Extendable table to add different cost centers

    I am filling a mileage reimbursement form. I think I have a good design (?), but lack me a critical efficiency in the form. I want the form to be able to calculate the cost of centers around the repeating table in the subform. I have a drop down menu that has different cost centers. How would I be able to sum as cost centers within the repeating table? Can I fill another table with just the totals for a particular cost by calculating Center? I need this for all cost centers, that this would help the accounting as multiple cost centers would be added.

    My first page is extensible to accommodate several lines and has a total of page and a grand total that floats if multiple lines are required. My second page is more or less just for the accounts that I have a separate table that now is done by hand. The clerk must print the form and then manually add each cost center and then add it to the table on the second page.

    I tried to use only a numeric field on the second page, trying to extract calculations of the test entry in the center of cost of change. It only puts the data to the first entry and do not scroll down and capture all the cost centers in the repeating table that are Edit. Any help in the code and ideas on how to present the whole into a new table would be greatly appreciated. I am a beginner at this and am trying to learn and complete it on my own but I don't know what to do. My form is attached.

    http://aaa9.org/updated%20Employee%20Mileage%20Expense%20Form.PDF

    Hello

    Looks like that me and Jono watched this at the same time. I put the summary in a another table is probably the only real difference, but after taking a sample, I thought I could share it, https://acrobat.com/#d=ltESj1zx3bk1GP9baTdv2g.  Take a look at the code in the form1 form. SummaryTable calculate event.

    It may be useful

    Bruce

  • HP workspace: where are located the workspace of HP data centers?

    Hey everybody,

    Where are located the workspace of HP data centers?

    Thank you

    Bill

    HP workspace is currently supported by seven, SSAE16-SOC certified, regional data centers, serving many countries. Data centers are located in Australia, Germany, Ireland, Japan, Singapore, and two in the United States (California and Virginia). The workspace of HP team will be allowing multiple data centers in the coming months to provide global coverage for customers. To see a current list of regional data of the workspace of HP centers refer to www.hpworkspace.com.

  • iCloud full - found two backups with different dates

    My 20g iCloud storage is full.  When I went to manage my data, there were 2 backups of my iPhone with different dates.  Can I remove 1 of them (the older one I guess) without affecting my current phone?  I guess that's when I upgraded my iPhone 4 to 5

    Of,.

    Yes, as long as you can identify with certainty the backup latest.

  • How to convert an array of string elements to a cluster with elements named different data types?

    I'm looking for more help with the conversion of an array of elements of the chain in a cluster containing elements named different data types.

    I am importing data from an Excel worksheet.  He is coming in LabVIEW as separate (channels) 3 tables: 1) Variable name, (2) three possibilities Int, double, String) data type and the value 3), with the clues in each table corresponding to a separate variable (I have about 180 variables to import).  My ultimate goal is to convert the string array of 'Value' in a cluster.  But I want the correct data type in the cluster and I also the elements of the cluster name to match with the string 'Variable name' table so that I can use the Unbundle based on the name in my main VI.

    Please see attachment a Subvi for more details.  I did the size of the new items of tables 5 for simplicity.   I realize that labels property cannot be changed during execution and I don't think I need to do.  I just want to use the production cluster (mainly the unbundle by name) to help design my main VI.  I will need to 'read' and 'write for' the cluster during execution, but I won't need to change the names of the items.

    I was also wondering if there is a better way to import data from Excel?  Is it possible to import directly into a cluster immediately rather than put everything as strings?  I have attached a Subvi showing how I currently bring in data (found on the forum somewhere).  It comes as table 2D, which I divided into 3 separate tables that I mention above.

    I am open to any suggestion.  Thank you very much.

    -Mike

    Instead of trying to create a cluster, I think I would use only variant attributes.

  • In Windows Explorer. A dated file say 12/02/2000. When you click the folder, the files in the folder bear different date. Why is it so.

    ORIGINAL TITLE: I use Windows xp.

    I use Windows xp. In Windows Explorer. A dated file say 12/02/2000. When you click the folder, the files in the folder bear different date. Why is it so. To update the files, we should see the dates of the files instead of the dates of the folder. right? Why is there such a difference?

    My copy of Windows XP works the same as yours.  Apparently the date folder is not updated when the content is, that fact make some sense as the folder itself is not updated when new content is created in the it.

  • Tried to restore my computer to an earlier date & it keeps its back indicating it cannot restore to this date. I tried 6 different dates that are bold and assume to work. There is no info on what to do next

    Tried to restore my computer to an earlier date & it keeps its back indicating it cannot restore to this date.  I tried 6 different dates that are bold and assume to work. There is no info on what to do next

    Requel,.
    Thanks for posting on the Microsoft answers Forum.  The first thing I would suggest running a virus scan.  Make sure you have no virus causing problems.  If you do not have an antivirus program, then you can download it free here: http://www.microsoft.com/Security_essentials/

    If there is no virus or it still does not work after virus cleaning, then start in safe mode and test from there.  Here are the instructions for Safe Mode.

    Let us know the results. Mike - Engineer Support Microsoft Answers
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • Using node NHP groups in multiple data centers

    Hello

    I was looking for information, I'll implement a distributed deployment of ISE.   We have two data centers, each will have its own group of PSN node (load balancing), I need a strategy where we can ensure that all the DNA do not point to a single group of PSN node.  In the config switch that I only noticed that the radius server registration option where first is referenced and secondary IP is used only if the primary Radius Server is unavailable.  We have many sites of the direction we want to deploy ISE, we would like to distribute the RADIUS AuthC/AuthZ evenly between the two DC.

    Thank you

    -Amin

    Just so we are clear, ISE node groups did not-load balancing, you need a for this external load balancer. If you are actually using a balancer for each domain controller, then you might have half of your switches just manually use a vip for primary and secondary school, and the other half upside down. Also, if you use aaa server groups in your switch, you can also do a local switch 'balancing', based on the current session how are radius on each server in the group.

    http://www.Cisco.com/c/en/us/TD/docs/iOS-XML/iOS/sec_usr_rad/configurati...

Maybe you are looking for

  • Satellite Z30-A-1CZ - broken key on the keyboard

    Hello I am proud to use a Toshiba Satellite Z30-A-1CZ., I bought this winter in Germany.It is a wonderful machine and work or surf is an absolute joy. Last week I broke accidentally (left arrow) key on my keyboard.The key cap is broken, it does not h

  • 1 TB SDD for Portege Z30 - A - 15 M

    I need a compatible SSG for my Z30 protect - A - 15 M. The capatity must be greater than 512 GB My dream woud be 1 TB.

  • X 360 Pavilion: Pavilion x 360 SSD upgrade

    Hi all, I have recently (October 2016) bought a Pavilion x 360 (model 13-0004nl); internal 5400 RPM drive 1 TB is extremely slow and so would an SSD. I am not able to find info on this machine, and if it can be upgraded to a SSD drive or not, someone

  • Re: Want to HP dv7 - no sound on the TV when it is connected via a HDMI cable

    Hello. I would also like to ask for help because I'm faced with the same question. what I'm trying to get a sound with HDMI, it will not work... Delfim João

  • 5 d Mk III-L-bracket on 5Ds?

    Will be a L-bracket for a 5 d Mk III was a well-made 5Ds? The specs on the Canon site show the same size for both, however, I guess that the depth is measured from the rear surface of the body to the front surface of the mount. This does not mean tha