11-10-2020 11:34 AM
Hello everyone,
I have a question about routing in a Cisco FTD and it is the following: I am publishing services (such as web, erp, etc.) on a server and everything is going well but I want to send the internet from the server through another ISP, it is possible to do that ?
I currently have PBR and route map since I have multiple ISPs. In the configuration I use certain network objects to get them out by the different IPS and balance the load a bit.
11-10-2020 10:41 PM
If my understanding correct, you want to source Server traffic to send our using ISP2 (where i think ISP1 is your default outgoing)
Then yes possible the same way you do in PBR source IP next-hop ISP2, make sure you have ISP2 Router route back to FTD.
11-11-2020 05:20 AM
11-11-2020 08:42 AM
Goog Morning, Maybe I do not explain well, I have a web server which I want the incoming traffic to use the ISP1, when the web server sends traffic I want it to do it for the ISP2. The problem that I have had when using the PBR is that when I send the traffic through the ISP2 my web page stops being online, I can no longer access it. (because in the first instance in the pbr is the ISP2)
thanks for answering
11-11-2020 01:32 PM
So you want to use different ISPs depending of the function:
- if your server is acting as a server for external clients and hosting your pages
- if your server is acting as a client to external services when you need to download stuff out of the Internet
The closest I can think of is something similar to this, a stateful PBR on ASA: https://community.cisco.com/t5/switching/asa-5512-9-4-2-3-policy-based-routing-pbr-stateful/td-p/2814358
11-11-2020 07:41 AM
Goog Morning, Maybe I do not explain well, I have a web server which I want the incoming traffic to use the ISP1, when the web server sends traffic I want it to do it for the ISP2. The problem that I have had when using the PBR is that when I send the traffic through the ISP2 my web page stops being online, I can no longer access it. (because in the first instance in the pbr is the ISP2)
thanks for answering
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide