09-30-2019 07:34 AM
Hello
This is my topology as attached. I have site A (Switch A) connected to FW (all same subnet)
I know have Site B (Switch B) connecting to Site A (Switch A) however I want only 1 subnet out of Site B (10.20.100.0/24) behind Site A firewall - is this possible?
Solved! Go to Solution.
10-01-2019 04:05 AM - edited 10-01-2019 04:06 AM
Just to add, as Paul says it will work, but you need to modify your next hops ie. you cannot have a static route on switch B pointing to the firewall IP, it needs to point to switch A's IP and then switch A has a route to the firewall and the same for routes from the firewall back.
Unless of course you are using EIGRP in the VRF as well in which case it will work.
Jon
10-01-2019 07:06 AM
10-01-2019 12:18 PM
Yes that should work fine.
Jon
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide