Lucky Fox IT & Telecom Knowledge Forum

ASA Dual Internet failover setup sample


###Primary Link
interface GigabitEthernet1/2
nameif internet
security-level 100
ip address

##Backup link
interface GigabitEthernet1/4
nameif internet2
security-level 100
ip address

nat (any,internet) source dynamic sub- interface
nat (any,internet2) source dynamic sub- interface

#Route Tracking - higher preference with Primary link (1), lower preference with backup (254)
route internet 1 track 1
route internet2 254

#SLA - Monitor Primary link to with 3 packets - if failure it will remove primary from route table
sla monitor 123
type echo protocol ipIcmpEcho interface internet
num-packets 3
frequency 10
sla monitor schedule 123 life forever start-time now
track 1 rtr 123 reachability