search cancel

Multiple IPSec Tunnels with Same Egress IP

book

Article ID: 174566

calendar_today

Updated On:

Products

Web Security Service - WSS

Issue/Introduction

There is a need to know if there can be multiple IPSec tunnels with the same egress IP connected to different Web Security Service (WSS) data centers. This for the purpose of having a failover ready for the IPsec tunnel currently serving as the primary access method.

Environment

Resolution

An IPSec tunnel to another WSS data center can be set up as a failover with the same egress IP as another IPSec tunnel. However, the failover tunnel cannot be active at the same time as the primary IPSec tunnel. This will cause an outage.

To address current outages or other issues, see the links to articles below:

Here are some other resources regarding failover and other IPSec issues tunnels: