Openvpn – Do Cisco ASA 5505 and openvpn work together

ciscocisco-asaopenvpn

We are planning to use a Cisco ASA 5505 as a router in our company. So far we used opnvpn to connect our mobile clients to the company network.

Our question is if Cisco ASA 5505 and openvpn work together? And does anyone have a link to an authoritative source which answers this question?

Our ISP told us that this combination does not work. I only found this entry in a discussion forum which indicates that this combination does not work (http://www.linuxquestions.org/questions/linux-networking-3/trying-to-connect-to-cisco-vpn-using-openvpn-567007/).

Any help appreciated.

Best Answer

ASA VPNs support two primary methods of establishing VPNs: IPSec and SSL WebVPN. Typically, the IPSec tunnels are used to establish static point-to-point VPNs (bridging two networks, for example) and the WebVPN is intended for client remote access.

OpenVPN uses its own setup to establish a VPN using SSL, and while OpenVPN and WebVPN use SSL, they're not compatible with other. This doesn't mean that you can't run both - you could setup an OpenVPN server inside for firewall or on a DMZ, and the OpenVPN traffic would be just another TCP stream running over a specific port to the ASA. However, you'll need additional hardware beyond the ASA5505 to accomplish it.