[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW1] VPN and Frame-Relay-Link
Hi Manfred, Your 3 firewalls cannot have overlapping encryption zones. So you can have all the sites use the central Sun fw, and have the two sites with Nokia fws just use their own. You can have frame relay failover to use the vpn by setting up static routes to those sites with a high cost. When the frame goes down traffic can then be sent over the VPN as long as the sites are using different firewalls. Note: existing tcp sessions will fail because the fw has not seen them established since they were established over frame relay, not the VPN. New sessions will work fine. You can do more if set up encrypted tunnels between your frame relay routers, that run though the VPN. HTH, Pete Goodridge --- [email protected] wrote: > > Hello > > We have a Frame-Relay-Net with 25 endpoints! > > On the central side there is a SUN FW 4.1 SP2 and a > Internet-Connection! > On two endpoints there are Nokia-Box´s with FW 4.1 > SP2 and also a > Internet-Connections! > > We want to create VPN´s to these endpoints and use > the Frame-Relay-Link and > the VPN-Link! > > My Question have sameone experience with this > construction and how have you > solved this problem! > (Which routing-protocol, static routing and so on) > > MANY THANKS > > manfred > > > Best Regards > Mit freundlichen Grüßen > Manfred Steinbacher > EDS Austria - Core Infrastructure > Network Services > > EDS Austria / AVL - Account > Phone: +43 316 787 470 > Fax:> eMail: [email protected] > Hans-List Platz 1 A-8020 GRAZ > > > > > > ================================================================================ > To unsubscribe from this mailing list, please > see the instructions at > > http://www.checkpoint.com/services/mailing.html > ================================================================================ __________________________________________________ Do You Yahoo!? Get email at your own domain with Yahoo! Mail. http://personal.mail.yahoo.com/ ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|