Firewall Wizards mailing list archives

RE: firewalls & multi-homing


From: Irwin Lazar <ILazar () tbg com>
Date: Tue, 4 Sep 2001 05:51:02 -0600

Got a question on multihoming and the use of stateful firewalls:

Suppose customer "X" has two internet gateways, one in NY and one in LA.
Traffic goes out the NY gateway, but for some reason, asymmetrical routing
sends the return traffic to LA.  Assuming the customer is using stateful
firewalls, will the return traffic in LA be blocked?  Is there any mechanism
for the LA & NY firewalls to exchange stateful information?

So far, the only solution I see to this issue is to tinker with route
advertisements to prevent or minimize asymmetrical routing.

Thanks in advance.

irwin

-----
Irwin Lazar
Senior Consultant, The Burton Group
e-mail: ilazar () tbg com
Office: 703-742-9659
Cell: 703-402-4119
http://www.tbg.com/
_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


Current thread: