Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello guys, Is it possible to get S2S VPN State from Firepower 2110 over SNMP? I just couldn't find appropriate OIDs and templates for Zabbix are not working. Please advise if there are another ways to monitor S2S states.Thanks in advance.
Hello, Please see attached diagram.The advertised network is subnetted and 2 of subnets with 26 prefix length are beyond the FirePower and are available from the Internet. 10 ip addresses from 3th subnet(1.1.1.128/26) are assigned to the NAT Pool and...
Hello, I have attached a diagram and would like to get an advice regarding of the best practice configuration scenario.Will it work properly if R1 is peered with R3 and R2 across the same subnet? What if I would filter on R3 some received network(e.g...
Hello, We have Single Multihomed BGP design with 2 Enterprise routers. See attachment.Enterprise routers are configured as iBGP neighbors. Receiving Full routes and Default route from both ISPs.Advertising one /24 block. I am keen in getting implemen...
Hello, Could you guys please explain me the best practice for configuration of Public ip address for web service(website) whether set it directly on web server which is behind a firewall\waf\ips or set it on firewall and do forwarding to private ip a...
I am sorry for misunderstanding, I am confusing everything.Let me describe scenario in more details:R3 and R2 are iBGP neighbors. R1 and R2, R1 and R3 are iBGP neighbors as well.R3 is receiving 8.8.8.0/24 NLRI. I am applying abovementioned route-map...
Thank you for your response, George Yes, here is full mesh. R2 and R3 are iBGP peered too. and I wouldn't want that R2 gets Inbound filter from R3. Could you please give a configuration example?
Thank you for your response, Richard. Could you please give me some details(example) about applying filters per neighbor?Based on my diagram let's say I configure route-map:route-map abc permit 10 match ip address prefix-list abc set local-pref 200...
Hello,to safe amending a prefix list you could use an as path filter on your local asn and that would do the trick with less administration - I will keep it in mind, thank you. ONLY-ISP2-NETS-OUT out - This route map is needed for directing Outgoing...