<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Checkpoint FW and BGP in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102622#M8067</link>
    <description>&lt;P&gt;Router-ID should be the VIP, also recommend using Graceful restart...&lt;/P&gt;</description>
    <pubDate>Thu, 19 Nov 2020 13:00:51 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2020-11-19T13:00:51Z</dc:date>
    <item>
      <title>Checkpoint FW and BGP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102263#M8027</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;We currently have two FWs in cluster at two locations in active/backup mode.&lt;BR /&gt;FWs servers as a gateway with floating vIP LANs, without BGP.&lt;/P&gt;&lt;P&gt;We would like to add another LAN interface with BGP. We want to have two BGP sessions, one at each location.&lt;BR /&gt;At least active FW would advertise default route to leaf/spine switches. When FW switch from backup to active&lt;BR /&gt;it should start to advertise better default route.&lt;/P&gt;&lt;P&gt;Is it possible to have such a configuration or we have to move to active/active topology?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards, Ales&lt;/P&gt;</description>
      <pubDate>Tue, 17 Nov 2020 10:30:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102263#M8027</guid>
      <dc:creator>useraz</dc:creator>
      <dc:date>2020-11-17T10:30:30Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint FW and BGP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102373#M8041</link>
      <description>&lt;P&gt;I think it will work. Only the active member talks BGP and I'm not aware of any requirement for the BGP configure to be %100 the same on both members. There could be some items that need to be the same such as local AS.&lt;/P&gt;&lt;P&gt;Better safe then sorry with that being said. Test it out.&lt;/P&gt;</description>
      <pubDate>Tue, 17 Nov 2020 18:07:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102373#M8041</guid>
      <dc:creator>John_Fleming</dc:creator>
      <dc:date>2020-11-17T18:07:28Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint FW and BGP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102622#M8067</link>
      <description>&lt;P&gt;Router-ID should be the VIP, also recommend using Graceful restart...&lt;/P&gt;</description>
      <pubDate>Thu, 19 Nov 2020 13:00:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-FW-and-BGP/m-p/102622#M8067</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-11-19T13:00:51Z</dc:date>
    </item>
  </channel>
</rss>

