09-22-2014 11:13 AM - edited 03-07-2019 08:50 PM
Hello All,
I have a question of the 2 core switch with 2 firewall connection. The 2 firewall is the cluster and both core switch has static default route to point to the firewall vrrp ip. My question is how to create the redundancy design for such conneciton. I plan to enable ospf between the 2 core switch. The problem is we do not enable ospf between the core switch and firewall and only has static route between them.
Since there is only ospf neighbor between the 2 core switch, if the link between the core1 to firewall failed, there is route issue since the statis is still point to the firewall.
Any idea?
Thanks!
09-22-2014 12:22 PM
Cant we run ospf between switch and firewall. if not and we want to continue with static route then you can use track feature to check if firewall i reachable or not.
Example given in below link
https://sites.google.com/site/chaseerry/cisco-asa/static-route-tracking
Regards,
Akash
09-22-2014 12:46 PM
no ospf configured on the firewall yet. IPSLA yes works fine. I am just wondering if the static route can be removed automatically if the next hop is not available on 7k. It looks like 7k/9k support it, but I never tested it...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide