View Single Post
  #8 (permalink)  
Old 2006-08-22
Porter Porter is offline
Senior Member
 
Join Date: 2006-07-10
Posts: 164
Rep Power: 3
Porter has an average reputation (10+)
Default Re: Need: servers always nated from ISPA address space and reachable

Firewall and Smartdefense paper, chapter 5, starts on page 101

before we run into a misunderstanding, of course are your servers unavailable if ips a goes down, to avoid this just setup a second dns in a second offical ip range, that means your webservers will have two ip addresses entered inside dns, resolving is done via round robin, both dns are behind your fw-1, fw-1 dns proxy is configured to handle ip adresses from both ranges for one host, if isp a is down fw-1 will recognise it and will only reponse with ip-adresses from isp b

I understood your setup and needs but with your current setup it won't be possible, you have to change something, either setup the isp red as CP recommends it or do something like autonomous system
__________________
misery is optional

Last edited by Porter; 2006-08-22 at 07:43.
Reply With Quote