Question
Redundant VPN config help
Hello all, have a VPN project and having a problem. Almost got it though...
I have a 200E and a test 60E at a remote site I want to set up a VPN between the 2 sites, but have redundancy for the 200E if an ISP goes down at the 200E location. 200E config: WAN1 - ISP1WAN2 - ISP2 Primary VPN on WAN1 - working 10/0Backup VPN on WAN2 - not working on failover 20/0 link-monitor configured on both WAN1 and WAN2 60E config: WAN1 - ISP1 (only 1 ISP here) Primary VPN on WAN1 - Connects fine to primary on 200E to WAN1 10/0Backup VPN on WAN1 - Would connect to the WAN2 IP of the 200E 20/0 link-monitor running on WAN1 (only to match configs of FGs) If I software disable WAN1 or pull the Eth out of WAN1 -- Internet switches over to WAN2, no downtime. 200E primary VPN was working perfectly. After WAN1 goes offline, drop in vpn traffic seen but Backup VPN does not come online. I can see phase 1 success messages for backup VPN, but no traffic passes or tunnel showing online. What am I missing?