My firewall A will be connecte with Router A and use the OSPF.
Only firwall interface that is connected with router will use the OSPF and interface that is connected with switch will have the static routes.
I will redistrubte the static rotues into the OSPF domain via my firewall.
All internet will be use by the Firewall C. Now the problem is that I am not able to find out which interface should i put in ospf domain, If i will put outside interface in ospf domain, i have to make static and acl for all entries that are coming from OSPF domain. bcz Enterprise network will use Internet via Firewall C as mention in the diagram.
what do u think about no-nat-control and nonat solution.
Any solution regarding this will be highly helpful.