Create a Post
Showing results for 
Search instead for 
Did you mean: 

How to deal with 2 Providers

Our Perimeter Firewall-Cluster is connected to the Internet via Provider 1 using Provider-Assigned Public IP Addresses.

In the future, we will use our own PI-Range to connect to the Internet via BGP-attached Provider2 and Provider3.

The migration phase will last 2 years. During that time, the Firewall Cluster must be able to handle both the "old" PA-Range and the "new" PI-Range. Basically, the Firewall should provide Source based Routing for the packets leaving its external linterfaces. How good will fit the ISP-redundancy feature here. Arer there any other options to achieve our goal?

2 Replies

A network diagram would be really helpful here with a little more information about what you want routed through which ISP.

That said, ISP Redundancy only supports two ISPs, so maybe you want to use Policy-Based Routing here.

0 Kudos

Thanks Dameon

PBR is probably the way to go. Are there any numbers on how big the performance impcat is when using PBR?

0 Kudos


Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events