Configuring a Checkpoint Gateway for a simple OSPF environment.
For this example we will be concentrating on the links between R1 and R2 and the gateway at the bottom. The other links are irrelevant and simple server to provide an ISP like look for this article. The default route or 0.0.0.0/0 is being provided by the upper most router in this first depiction or 10.4.10.1.
data:image/s3,"s3://crabby-images/61004/61004320dc44b969fa10e51df60c4128bd959246" alt="2019-06-30 23_41_02-Basic OSPF configuration - OneNote.png 2019-06-30 23_41_02-Basic OSPF configuration - OneNote.png"
Relevant router configuration for R1 and R2. please note the bad practice of not using encryption on the OSPF neighbor relationship, this will be covered at a later date.
R1:
hostname R1
!
interface GigabitEthernet0/0
ip address 10.4.1.2 255.255.255.252
ip ospf 100 area 0
!
interface GigabitEthernet3/0
ip address 10.4.3.1 255.255.255.252
ip ospf 100 area 0
!
router ospf 100
router-id 10.4.1.2
log-adjacency-changes
!
end
R2:
hostname R2
!
interface GigabitEthernet0/0
ip address 10.4.0.2 255.255.255.252
ip ospf 100 area 0
!
interface GigabitEthernet3/0
ip address 10.4.2.1 255.255.255.252
ip ospf 100 area 0
!
router ospf 100
router-id 10.4.0.2
log-adjacency-changes
!
Now for the gateway
GUI: configuration:
- To enable OSPF simple add the interfaces on the ospf configuration screen. Login to Gaia via https and find the OSPF section under advanced routing.
data:image/s3,"s3://crabby-images/287e0/287e08d09297280a78398e6b0397012c2e6d517e" alt="2019-06-30 23_26_00-Gaia - Internet Explorer.png 2019-06-30 23_26_00-Gaia - Internet Explorer.png"
Click Add under interfaces to add the necessary interfaces it is unnecessary to create the backbone area or area 0 as this area is created by default. Please note the other settings on this page for now don't change them but they can be used to tune you routing convergence, set neighbor authentication etc…
data:image/s3,"s3://crabby-images/1fb28/1fb28793c93f7ad54f9fde15fc6adedb84bb73be" alt="2019-06-30 23_28_58-Gaia - Internet Explorer.png 2019-06-30 23_28_58-Gaia - Internet Explorer.png"
Once the gateway interfaces have been added to the OSPF page you can monitor you progress by clicking on the Monitoring icon on the top right of the page. Once on the monitoring page select Neighbor to see your OSPF neighbor adjacency. (TIP: you should seldom see the Dead (timer) value below 20 and in most environments 30)
data:image/s3,"s3://crabby-images/56f9b/56f9b2305848b96aa0ea0ee46e8b361e6c6e0bb4" alt="2019-06-30 23_31_59-Gaia - Internet Explorer.png 2019-06-30 23_31_59-Gaia - Internet Explorer.png"
On your routers you should see a similar result
data:image/s3,"s3://crabby-images/b37e3/b37e309af23b0fe73627e23d77a679931da1d97e" alt="2019-06-30 23_33_46-R2.png 2019-06-30 23_33_46-R2.png"
Finally to verify your route table via the GUI:
Select Routing Monitor under Advanced Routing to see a complete route table
data:image/s3,"s3://crabby-images/f3cde/f3cde81868ed7e18d04da7e0b126623ec725e4d6" alt="2019-06-30 23_34_42-Gaia - Internet Explorer.png 2019-06-30 23_34_42-Gaia - Internet Explorer.png"
To review the route table and neighbor relationships from the gateway CLI:
"show route" to review the route table
data:image/s3,"s3://crabby-images/bff34/bff3417768786d8eb0859b32a9ff28d8282f47c2" alt="2019-06-30 23_36_40-10.254.254.200 - PuTTY.png 2019-06-30 23_36_40-10.254.254.200 - PuTTY.png"
"show ospf neighbors" to review your neighbor status
data:image/s3,"s3://crabby-images/acd05/acd05b14fc4636039d646ae66d816f5ad4327d7b" alt="2019-06-30 23_37_33-10.254.254.200 - PuTTY.png 2019-06-30 23_37_33-10.254.254.200 - PuTTY.png"