ASA order of operation - static route or proxy acl
Hi, I have sort of a corner case here. I cannot lab this up to find out unfortunately, cannot find info on this on the web either.
One ASA with site to site VPN tunnel. Normal usage, proxy ACL that tells ASA when to forward traffic through the tunnel. Now, what would happen if I would add a static route pointing to the VPN destination network to go through completely different interface on this ASA? Would packets use the static route, or they would be forwarded through the local tunnel (according to proxy ACL data)?
Practical reason for this is having two tunnels to the same destination, one main and the other one backup. Trying to configure automatic fallback through reachability tracking on this ASA. If static routing has higher priority, then I can use this other tunnel (on some other device) as a main tunnel, and local tunnel as a backup.