Hi Hugh

Agree that L2L still may need "set reverse-route" to add route for proxies
but it is not required for IPSec RA right?


With regards
Kings

On Tue, Oct 5, 2010 at 8:23 PM, hughie CCIE <[email protected]> wrote:

> Hi Kings,
>
> the problem with using this on an L2L vpn is that the route is not
> removed when the VPN tunnel is down.
>
> but you do still need the set reverse route, otherwise the route will
> not appear at all in the table.
>
> hugh
>
>
> On 5 October 2010 15:13, Kingsley Charles <[email protected]>
> wrote:
> > Hi all
> >
> > With Anyconnect and IPSec RA, the ASA automatically adds a static route
> for
> > leased IP address. Hence I feel that configuring "set reverse-route" in
> the
> > dynamic crypto map is no more required.
> >
> > Any thoughts?
> >
> >
> > With regards
> > Kings
> >
> > _______________________________________________
> > For more information regarding industry leading CCIE Lab training, please
> > visit www.ipexpert.com
> >
> >
>
>
>
> --
> Regards
> Hugh
>
> 17/4 Dundas Street
> Edinburgh, Midlothian, EH3 6QG, UK
> Email hugh [dot] mcgauran [at] gmail [dot] com
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to