<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Traffic Engineering in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58747#M9622</link>
    <description>&lt;P&gt;Maybe you don't have to. In our use case we had to publish static routes via OSPF, that's why we needed it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 22 Jul 2019 19:38:00 GMT</pubDate>
    <dc:creator>FedericoMeiners</dc:creator>
    <dc:date>2019-07-22T19:38:00Z</dc:date>
    <item>
      <title>Traffic Engineering</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58713#M9619</link>
      <description>&lt;P&gt;Attached is a brief look of my present architecture. The camera traffic highlighted in blue terminates to the video server for display on the a.a.a.a ip address. On the other hand i have users (using the labeled netscaler as an example) on Vlan B also trying to get access to a.a.a.a.&lt;/P&gt;&lt;P&gt;I have BGB established with all switches and from information i have gathered from the network they have bgp/ospf redistribution set up between the multicast switch and blef switch VS5.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The issue i have right now is,&amp;nbsp; VS4 firewall is sending all traffic going to vlan A to use the multicast switch as it next hop which should not be the case. This is causing a loop on my network.&lt;/P&gt;&lt;P&gt;The attached image shows the right part i want the traffic to go.&lt;/P&gt;&lt;P&gt;I have VSX running,i have tried to setup pbr but it is disabled.&lt;/P&gt;&lt;P&gt;Would appreciate any insights.&lt;/P&gt;&lt;P&gt;Thank You&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jul 2019 14:30:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58713#M9619</guid>
      <dc:creator>Enyi_Ajoku</dc:creator>
      <dc:date>2019-07-22T14:30:31Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Engineering</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58716#M9620</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;Have you tried setting up Route Maps to achieve the desired routing? I had a similar issue with OSPF inside VSX and Route Maps was the way to go, you can set up conditions, actions and weights.&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk100501" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk100501&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Keep in mind that you may need to set up static routes via SmartDashBoard first:&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk98909" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk98909&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Hope it helps,&lt;BR /&gt;Federico Meiners</description>
      <pubDate>Mon, 22 Jul 2019 14:47:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58716#M9620</guid>
      <dc:creator>FedericoMeiners</dc:creator>
      <dc:date>2019-07-22T14:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Engineering</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58746#M9621</link>
      <description>&lt;P&gt;Thank You for your feedback&lt;/P&gt;&lt;P&gt;one question, why do i need static? i have a growing number of traffic from both the remote sites and VS4.&lt;/P&gt;&lt;P&gt;my assumption was BGP will take care of the routing and i would create routemap to only allow traffic from camera&amp;nbsp; firewall go through the multicast switch and everything else go to the BLEF switch (VS5)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jul 2019 19:30:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58746#M9621</guid>
      <dc:creator>Enyi_Ajoku</dc:creator>
      <dc:date>2019-07-22T19:30:28Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Engineering</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58747#M9622</link>
      <description>&lt;P&gt;Maybe you don't have to. In our use case we had to publish static routes via OSPF, that's why we needed it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jul 2019 19:38:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-Engineering/m-p/58747#M9622</guid>
      <dc:creator>FedericoMeiners</dc:creator>
      <dc:date>2019-07-22T19:38:00Z</dc:date>
    </item>
  </channel>
</rss>

