Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Sandgirl
Contributor

High availability for VPN connections to two external gateways

Hi,

 

We have a VPN established between our Checkpoint cluster and a remote gateway. 

The owner of the remote gateway has asked if we could create an additional VPN tunnel to a secondary remote gateway, to set up high availability: VPN traffic only flows to the primary (original) remote gateway, unless the gateway becomes unreachable. If this happens, the traffic is to be flowing to a secondary (new) gateway. 

Is this possible to achieve? And if yes, how? 

Sandgirl

0 Kudos
30 Replies
Blason_R
Leader
Leader

Despite the fact that mastering strongswan on an ubuntu box with VTI and BGP may allow for a swift understanding, the solution remains flawless. I managed to move considerable number of clients this way towards utilizing tunnels with multiple cloud providers. As most cloud providers offer dual peers for redundancy, and customers often have two ISP links connected to their firewall, VPN redundancy tends to be ineffective in such a scenario.

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events