<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Configure OSPF in ECMP Environment in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configure-OSPF-in-ECMP-Environment/m-p/109378#M14899</link>
    <description>&lt;P&gt;Hello Checkmates,&lt;/P&gt;&lt;P&gt;I have an issue working out how to configure OSPF in my environment. I have a ClusterXL pair of 6500 Gateways E80.40. I want to connect them to a pair of backbone switches which use OSPF to route between them and to the rest of the network using ECMP paths from each Backbone. From what I can tell OSPF routing in a ClusterXL environment is dependent on the VIP of the interfaces. However, each interface in my environment would sit in a different subnet, one subnet for each interface that connects to each backbone. It is unclear whether such an environment is supported, or how I go about configuring the interfaces and VIP. Any ideas?&lt;/P&gt;</description>
    <pubDate>Sun, 31 Jan 2021 13:10:00 GMT</pubDate>
    <dc:creator>Aaron_Zelechow</dc:creator>
    <dc:date>2021-01-31T13:10:00Z</dc:date>
    <item>
      <title>Configure OSPF in ECMP Environment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configure-OSPF-in-ECMP-Environment/m-p/109378#M14899</link>
      <description>&lt;P&gt;Hello Checkmates,&lt;/P&gt;&lt;P&gt;I have an issue working out how to configure OSPF in my environment. I have a ClusterXL pair of 6500 Gateways E80.40. I want to connect them to a pair of backbone switches which use OSPF to route between them and to the rest of the network using ECMP paths from each Backbone. From what I can tell OSPF routing in a ClusterXL environment is dependent on the VIP of the interfaces. However, each interface in my environment would sit in a different subnet, one subnet for each interface that connects to each backbone. It is unclear whether such an environment is supported, or how I go about configuring the interfaces and VIP. Any ideas?&lt;/P&gt;</description>
      <pubDate>Sun, 31 Jan 2021 13:10:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configure-OSPF-in-ECMP-Environment/m-p/109378#M14899</guid>
      <dc:creator>Aaron_Zelechow</dc:creator>
      <dc:date>2021-01-31T13:10:00Z</dc:date>
    </item>
    <item>
      <title>Re: Configure OSPF in ECMP Environment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configure-OSPF-in-ECMP-Environment/m-p/109983#M15060</link>
      <description>&lt;P&gt;If you cannot mesh the interfaces using bonds you can explore the following option using Cluster XL:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ClusterXL_AdminGuide/Topics-CXLG/Active-Active-Mode.htm" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ClusterXL_AdminGuide/Topics-CXLG/Active-Active-Mode.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Alternately the firewalls could be deployed not in a clustered arrangement but you would need to manage the risk of asynchronous traffic / lack of state syncronization / fail over via routing.&lt;/P&gt;</description>
      <pubDate>Sat, 06 Feb 2021 11:54:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configure-OSPF-in-ECMP-Environment/m-p/109983#M15060</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2021-02-06T11:54:32Z</dc:date>
    </item>
  </channel>
</rss>

