I am looking to add as much fault tolerance as possible. The ISP connected router has 2 GE ports coming off of the back which I was going run to 2 seperate switches for Internet connectivity of my firewalls, etc.
My thoughts were that although the circuit would be down if the ISP link drops, it would be protected against a single ethernet cable/port problem coming off of the router and against a switch failure for connection to my firewalls.
Can anyone suggest the best way to accomplish this? Since there is only one router involved, I don't think HSRP can be used to provide failover between the two ethernet links. Would I need to put a different IP on each ethernet interface and then have multiple default gateways on my firewalls and other Internet facing devices or is there a better way to do this?