Re: pfsync/carp via 2 ISP's

2005-12-20 Thread eneville (sent by Nabble.com)
Stoyan Genov wrote: > > Joachim Schipper wrote: >> On Tue, Nov 29, 2005 at 10:31:03AM +0100, David Coppa wrote: >> >>>On 11/29/05, Joachim Schipper wrote: >>> >>> Why don't you just put a switch in front of the two firewalls, and then do CARP (for firewall failover) plus some smart rout

Re: pfsync/carp via 2 ISP's

2005-11-29 Thread Stoyan Genov
Joachim Schipper wrote: On Tue, Nov 29, 2005 at 10:31:03AM +0100, David Coppa wrote: On 11/29/05, Joachim Schipper <[EMAIL PROTECTED]> wrote: Why don't you just put a switch in front of the two firewalls, and then do CARP (for firewall failover) plus some smart routing tricks (for ISP failov

Re: pfsync/carp via 2 ISP's

2005-11-29 Thread Joachim Schipper
On Tue, Nov 29, 2005 at 10:31:03AM +0100, David Coppa wrote: > On 11/29/05, Joachim Schipper <[EMAIL PROTECTED]> wrote: > > > Why don't you just put a switch in front of the two firewalls, and then > > do CARP (for firewall failover) plus some smart routing tricks (for ISP > > failover - search th

Re: pfsync/carp via 2 ISP's

2005-11-29 Thread David Coppa
On 11/29/05, Joachim Schipper <[EMAIL PROTECTED]> wrote: > Why don't you just put a switch in front of the two firewalls, and then > do CARP (for firewall failover) plus some smart routing tricks (for ISP > failover - search the archives, I forgot the proper keywords)? pf route-to? Regards -Davi

Re: pfsync/carp via 2 ISP's

2005-11-29 Thread Joachim Schipper
On Mon, Nov 28, 2005 at 08:47:04AM -0800, edgar mortiz wrote: > hey guys > > is there anyone here ever tried to put up a openbsd fail-over fw using 2 > obsd boxes connected to 2 different ISP's ? > something like: > > > ISP1 (66.77.204.10) ISP2 (207.110.9.10) > | fxp0

pfsync/carp via 2 ISP's

2005-11-28 Thread edgar mortiz
hey guys is there anyone here ever tried to put up a openbsd fail-over fw using 2 obsd boxes connected to 2 different ISP's ? something like: ISP1 (66.77.204.10) ISP2 (207.110.9.10) | fxp0 | fxp0 fwall0(firewall1-master) fwall1 (firewall2-b