11-30-2022 09:30 PM
Hi All,
Please find the attached, we are using OSPF on Core and distribution switches, all desktop/laptop users are connected with access switches.
My proxy server is also mentioned separate.
Question : local traffic is going from end user to distribution switch and then core switch. but i want to use only internet traffic can go on proxy server. no need to go local traffic on proxy server. is it possible.
Cisco Nexus switch 9k
12-01-2022 03:29 AM
with PBR I think you can do that
any traffic that toward your WAN will go to Core directly
any traffic that toward internet will go to proxy server
apply PBR to your Agg-Acc SW link
12-01-2022 06:06 AM
If all your internal routes are in OSPF they should go to distro automatically while a default route could point towards Proxy.
How is the proxy attracting local traffic? is proxy part of OSPF?
12-01-2022 11:14 AM
there is couple ways i think can be done as I think on this. (but we need to know what kind of proxy servers? )
2 Options,
1 . Manually end-user proxy settings configured in explicit mode.
2. WCCP on the switch to redirect traffic to Proxy (if the proxy supports)
on the diagram, you have not shown your Local webservers.
12-01-2022 09:26 PM
Hi, Thanks for feedback.
Please see the layout design.end users are connected below Aggregation switch which is ospf area 10.
1) local traffic will forward from aggregation to core switch.
2) if any user want to go on the internet so the traffic will go from aggregation to the proxy server.
12-03-2022 06:58 AM
I have suggested some methods in the post. (not heard any inputs from you - other than new picture)
also, where is the traffic originating from? users ? where is this device located? (which one is agg switch ?)
how is your traffic path now, when the user initiates HTTP://blabla.com
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide