Hi,

I have a customer who has a distributed environment, a single enforcement
point, has has six network cards hanging off it, four of with are used to
provide extranet and remote user vpn domains.  Due to a recent requirements
analysis, I have proposed a new solution design that will make use of two
DL380 G5's in a clusterxl new mode multicast load-balancing setup running
SPLAT.  The wish to minimise partner administration, and wish to keep all
the current ip addressing scheme in place for the vpn domains.  I suggested
that we move the vpn domain clients to the switch behind the two firewalls,
and setup multiple vlans, enabling trunking on SPLAT.  The switches being
used are 2950's, so I am unable to define SVIs, and perform the InterVLAN
Routing on the switch, so the InterVLAN routing is going to be performed
also on SPLAT.  I have two questions, as I have not setup this paritcular
configuration, 1.  SPLAT performs InterVLAN routing, and how is this setup,
also what why does the viritual interfaces appear in SMARTDashboard?  2.
What are the implications for ClusterXL, will I have multiple viritual ips
and macs on a per vlan basis?  Any configuration or pdf on setup would be
great.

I have tried to reserach this issue the best I can, but unable to find a
great deal of information on line.

Christopher McGill
CCSE, CCSA, CCNA, MCP

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to