Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Shurik
Contributor

Redundant VPN with Third Party

Hello folks,

I am not able to figure out how to create a redundant site to site VPN tunnel... I tried a few different options, no luck so far.

Our client have two ISPs connected to the same firewall (3rd party). On my side it will be one endpoint. 

I am looking for an instant (or almost instant) failover in case there is an issue with any of client's internet circuits.

From your experience, what will be the best way to accomplish it?

 

Thanks!

 

0 Kudos
7 Replies
PhoneBoy
Admin
Admin

You need to configure MEP.
See: https://support.checkpoint.com/results/sk/sk164355 

Shurik
Contributor

Thank you! How good it's working with 3rd party?

At this point I don't know what will be the client's firewall vendor.

0 Kudos
PhoneBoy
Admin
Admin

Most of the interoperability issues that occur with third-party VPN gateways occur with getting the VPN established.
The MEP piece is pretty straightforward.

Shurik
Contributor

Thanks!

So in my case I'm going to configure two remote client's firewalls as center gateways and my gateway as satellite, right?

0 Kudos
PhoneBoy
Admin
Admin

That sounds correct.

0 Kudos
Shurik
Contributor

btw, will I see the same source IP, if the traffic is coming over the primary or secondary tunnel?

0 Kudos
the_rock
Legend
Legend

Keep in mind, MEP means you have multiple center gateways, so should not matter what 3rd party fw is.

Andy

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events