routeros and cisco ASA 5500

Dear all

I would like to hear from you if you have tested the following configuration:

  • VPN with IPSEC, star configuration when one point is connected to many “leaf sites”.
  • CISCO ASA 5500 as concentrator
  • routerOS as “leaf node”

Basically I am interested in hearing if there incompatibilities between these two products.

Comments and hints welcome :slight_smile:

Regards

Haven’t tried the ASA but it works fine using a PIX (v8) as the concentrator.

Regards

Andrew

Andrew, we tested it with ros 2.9.x and it does not work well. The ros machine goes to 100% and we experience ping looses. Did you try with 3.x or 2.9?

Thank you

Can’t get to that box right now but it was probably a late version 2.9 on a RouterBoard 532. CPU usage wasn’t an issue.

Kind regards

Andrew

we have more than 10 boxes mixed 2.9.46 and 2.9.50. It’s not a version thing, because some of the 2.9.46 got frozen and the same about 2.9.50.

Cheers.

Just setup a link from my Soekris net4501 box at home to the office PIX 515E. Pinging 1000 byte packets continuously results in a cpu usage no higher than 18%. Encryption is ESP 3DES.

The net4501 box is based on a 133 Mhz 486 class processor! (MT v3.10)

Kind regards

Andrew