[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now



Posted on 2011-05-11
Medium Priority
Last Modified: 2012-05-11
Dear Expert,

i have two sites, Site A and Site B.

Site A, 10.10.x.x/22
Site B, 192.168.x.x/24

Site A has 1 2MB lease lines and 1 ADSL both connected to my firewall.
Site B has 1 2MB Lease line connected to my firewall.

i am using SNA 3500 and 5500 as a firewall on both sites.
one of my server on Site A is also connected with third party (C), now i want to achive bwloe goals,

1) router SITE A user traffic to WAN2,
2) Connect SITE A and B
3) Connect DR host @ B to C
4) Avoid any looping
Question by:itubaf
LVL 16

Accepted Solution

Syed_M_Usman earned 2000 total points
ID: 35744289
this may help,

1) router SITE A user traffic to WAN2,

create one policy------> Source (Lan Subnet)---Destination (Amy)---Service HTTP, HTTPS----Gateway (Sec-Gateway)---Interface (GW-2)-----Metric (20)----Priority (High on WAN Rules)

2) Connect SITE A and B
create simple VPN (Site to site), if you are using good firewall you will have wizard

3) Connect DR host @ B to C
this is important, before you connect DR host to site C i want to know what is the current on Site A, you can avoid looping by using only host ip in your current vpn permit traffic (Site A-C)

4) Avoid any looping

once you create as i said above ther eshould not be any loops.

Author Comment

ID: 35745348
i will check, thank you

Featured Post

What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I've had to do a bit of research to setup my VPN connection so that Clients can access Windows Server 2008 network shares.  I have a Cisco ASA 5510 firewall.  I found an article which was extremely useful: It had a solution if you use ASDM to config…
Juniper VPN devices are a popular alternative to using Cisco products. Last year I needed to set up an international site-to-site VPN over the Internet, but the client had high security requirements -- FIPS 140. What and Why of FIPS 140 Federa…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

873 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question