Has anyone successfully set up scenario with multilple paths from the user side to a DMZ behind a firewall without running into issues with asymmetric routing? Here is the network. Users are in a VRRP connected vlan to two core routers. Each core has a routed link to a firewall. The ospf path cost back to the user is equal. With asymmetric routing on the return session the users intermittently lose connectivity to the servers. Is this a common problem with all firewalls. The firewall does not send traffic back through the same physical port that originated it. I haven't tried forcing traffic back on one link by increasing the path cost of the other but that will defeat the load sharing of links for the return traffic.
thnks in advance vnt90
Red Flag Submitted
Thank you for helping keep Tek-Tips Forums free from inappropriate posts. The Tek-Tips staff will check this out and take appropriate action.
Reply To This Thread
Posting in the Tek-Tips forums is a member-only feature.