cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
749
Views
0
Helpful
1
Replies

Firepower 2110 Hub and Spoke Topology with different preshared keys

lsalazarv44
Level 1
Level 1

Hello !!

I need to simulate a Hub and Spoke topology with several Point to Point topology VPNs using a Firepower 2110 as the Hub. The reason is the spokes must use their own particular preshared keys and IKE & IPsec policies. Is it possible to have Spoke to Spoke traffic ????

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

Not by default. That is, it is possible only if you explicitly allow it.

 

The traffic would have to traverse the hub and be allowed by the crypto maps (and NAT-exempted) at the hub, spoke 1 and spoke 2.

View solution in original post

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

Not by default. That is, it is possible only if you explicitly allow it.

 

The traffic would have to traverse the hub and be allowed by the crypto maps (and NAT-exempted) at the hub, spoke 1 and spoke 2.