Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
4mon
Participant

VPN as a backup (routing config)

Hi guys,
I have a little conceptual trouble and I would like to ask you for advice.

I need to reach client URLs (for example client.com 15.0.0.15) using two ways:
MPLS (primary)
and
VPN Site to Site (backup - VPN has to be UP all the time)

Currently I have already configured VPN Site to Site and everything works.
I didn't add any static routes to reach 15.0.0.15. Default routing to the Internet has been already in placed and only domain encryption and security policies has been created.

Now Client delivered their own pre-configured router so I connected it to CheckPoint.

What should be next steps to complete configuration?
Of course I know that I should set static route to 15.0.0.15 trought interface which is connected to MPLS Client router..
but what will happen then with VPN?
Which way will have higher priority? VPN or MPLS?
How to switch traffic to VPN when Primary MPLS will have outage?
Maybe I should delete 15.0.0.15 from domain encryption to reach 15.0.0.15 IP trought MPLS?

I hope that I described clearly this scenario so I would be grateful for your help.
I have a R80.40 Cluster_XL

0 Kudos
3 Replies
This widget could not be displayed.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events