04-25-2017 06:11 AM - edited 03-05-2019 08:25 AM
Dears,
AT PRESENT I HAVE ALL SINGLE LEG WITH NO REDUNDNACY BUT NOW THE PLANS ARE AS PER THE DIAGRAM ATTACHED
I WANT TO REACH RTRA FROM FIREWALL-A , HOW I CAN ACHIEVE ,, I HAVE THE ATTACHED ROUTER DEVICES AND ALSO I CAN GET SWITCHES IF REQUIRED.RTRA,RTRB,RTRC IN THE DIAGRAM NOT IN MY CONTROL BUT I HAVE TO ADVICE THE COMPANY WHAT TO BE DONE AND WHT WILL BE THE DESIGN. ON MY FIREWALL VPN ARE TERMINATING
THANKS
04-25-2017 06:39 AM
Hi
It looks you already have redundancy paths to reach RTRA through RTRD and E, you could use any internal routing protocol or eBGP as EGP. Now if you want redundancy with the firewall you should have other firewall and create a cluster active-standby or if it is allowed on the firewall model it could be active-active.
Hope it is useful
:-)
04-25-2017 01:04 PM
Dear Julio,
At present it is not according to the diagram it is planned to be that, but i have a question when we should use bgp and when we should not.
i missed to mentioned that we have 2 no's of firewall.
thanks
04-25-2017 02:06 PM
Hi Clark,
It depends of what you are going to implement, for example if you are connecting your network to a client network you could use BGP and restrict the networks to advertise or receive, other way is use static route.
Are RTC and E handled by the ISP or client side?
04-25-2017 09:18 PM
Dear julio,
D&E handle by client side but B & C buy isp.
thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide