03-11-2022 07:50 AM
Hi, I have two different sites, but I have only two firewalls, so want to deploy active-standby,
if site b internet traffic has to go through site b active fw , if site a fw fails ,site b fw should be active and all internet traffic has to go through the site b
How can I do this
What are the pros and cons
Thanks
03-11-2022 08:01 AM
my suggestion is to use 2 firewalls independently on 2 sites. you can use route metric customizations to do route prioritization.
03-11-2022 08:13 AM
Hi,
Thanks . if site A both firewall failed , how can I send the internet traffic to site b .
And If site A wan connection failed but firewall active , how can I send to site B
Thanks
03-11-2022 08:14 AM
you need 2 internet connections for 2 sites.
03-11-2022 08:17 AM
Hi,
If no redundant isp then?
Thanks
03-11-2022 08:20 AM
if sites are placed in distant places, you must have 2 connections for both sites. because if 1 site goes down, all the links are unusable. so you need secondary set of links to get access.
03-11-2022 08:26 AM
Hi,
I think my question was not clear , the connectivity between sites are ok and both sites firewall are up.But in site b the isp is down .
So I want all internet traffic from site a to site b.
How can I do that
Thanks
03-11-2022 09:32 AM
Hello,
how are the sites connected to the firewalls ? The easiest would probably be to implement SLAs on boyh sides that track the availability of the firewalls, and if there is no reachability, simply reroute all traffic using static routes...
03-11-2022 12:41 PM
Hello
If a site isp link fails then how do you connect to the other site?
If you don’t have any resilient connection the site that’s fails is isolated, As such you cannot have any form of HA redundancy.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide