cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1919
Views
3
Helpful
4
Replies

policy based routing with a firewall

Sandeep Choudhary
VIP Alumni
VIP Alumni

Hello Everyone,

I have problem while implementing policy based routing with a firewall.

Let me explain in detail.

I have 2 remote site(Site A-small , Site B - Big) , Site B is connected with HQ with Tunnels 1 and 2 ,  Site B and Site A is connected with Tunnel 9941.

what I want is:

Scenirio for Communication :

1)Site A--------->VPN Router Site B-----------> FW-------------->VPN Router Site B------------------>Central Site

2)Central Site--------->VPN Router Site B-----------> FW---------->VPN Router Site B-------------->Site A

3)Site B--------->FW-------------------->VPN Router Site B------>Central Site

4)Central Site--------->VPN Router Site B-------------------->FW------>Site B

5)Site A--------->VPN Router Site B-----------> Site B(no firewall)

6)Site B--------->VPN Router Site B-----------> Site A(no firewall)

Tunnel 1: 10.13.199.1-2

Tunnel 2: 10.13.199.1-2

Tunnel9941: 172.22.99.1-2

Site A LAN- 10.99.41.0/24

Site B LAN- 10.99.0.0/16

Central LAN - 10.18.0.0/16

If you need full clarification with VSD then please see the pdf file.

Wait for ur reply.

Regards

4 Replies 4

kunalgandhi
Level 1
Level 1

Hi Sandeep,

Interesting topology .... Checking the same & will revert u with the result.

Hi Kunal,

Thanks..I will wait.

Dhanywad..

Regards

Sandeep

Hi Sandeep,

YES it's achievable !!!

I tried to match your scenarion as much as possible &  tested it in GNS3. Hope it is as per your requirement.

Attached only topology diagram for you reference.

I can attached the entire configuration if you want, but I suggest you to try it first in GNS3. Trust me it will be fun and u will enjoy it ( As I did ). Please revert in case you stuck in setup. I'll guide you.

Regards,

Kunal Gandhi

Ok I will try at home and let u know the results.

BTW thanks for hard work.

Regards

Sandeep

Review Cisco Networking products for a $25 gift card