We have two 12200 VSX aplliance which are configured in cluster (VSLS) with one ISP (ISP1).
We have a setup as follows;
Server ----- VPN Router ----- Firewall ---- ISP1 -------------- IPSec VPN Client (Almost 10 Client)
VPN Router Interface in Natted on firewall with pupblic ip of ISP1 for establishing IPSec VPN between client and VPN Router.It work perfectely fine.
Now we have praposed one more ISP (ISP2) for ISP failover.
1. How can we configure ISP Failover on Checkpoint firewall?
2. How can we configure Natting and other thing. When primary link (ISP1) goes down, traffic will move on secondary link (ISP2) but client have ISP1 public ip configured for Ipesc VPN. How can we ride on this?
Any kind of help is appreciated.