If anyone can shed some light on this, it would be much appreciated.
Here is the problem, the 1841 router doesnt have VPN capability. The ASA currently uses NAT to translate the internal IP addresses to externals IPs on the T1. The ASA is also handling the VPN.
I want to add a cable modem to the mix, and either have all the user traffic or just port 80 ride this pipe.
The problem of course, is that I can't do PBR on the router because the route coming in from the lan is the external address from the ASA. You can't send the IP from the T1 out the cable modem. I can't do PBR on the ASA because it doesnt support it.
The only way I know how to get this to work, is to put the VPN and NAT on the 1841, turn on PBR within the router, and then turn the ASA into a transparent firewall. That way all traffic up and until the 1841 is coming over an INTERNAL ip on the same pipe and then use PBR to route that traffic out either the T1 or the cable modem, but my 1841 doesnt support VPN so id have to buy that capability or do it somewhere else. Not to mention I want to use more than 2 interfaces on the ASA.
I'm hoping someone with a bit more experience could direct me on what they thing would be the best way to do this. Any help would be grealy appreciated.
Here is the problem, the 1841 router doesnt have VPN capability. The ASA currently uses NAT to translate the internal IP addresses to externals IPs on the T1. The ASA is also handling the VPN.
I want to add a cable modem to the mix, and either have all the user traffic or just port 80 ride this pipe.
The problem of course, is that I can't do PBR on the router because the route coming in from the lan is the external address from the ASA. You can't send the IP from the T1 out the cable modem. I can't do PBR on the ASA because it doesnt support it.
The only way I know how to get this to work, is to put the VPN and NAT on the 1841, turn on PBR within the router, and then turn the ASA into a transparent firewall. That way all traffic up and until the 1841 is coming over an INTERNAL ip on the same pipe and then use PBR to route that traffic out either the T1 or the cable modem, but my 1841 doesnt support VPN so id have to buy that capability or do it somewhere else. Not to mention I want to use more than 2 interfaces on the ASA.
I'm hoping someone with a bit more experience could direct me on what they thing would be the best way to do this. Any help would be grealy appreciated.