Failover solution for two ISPs
Posted on 2013-11-20
I'm trying to figure out the best solution here. We have two ISPs providing Inet services for our org. One is to the the Primary line and the other is our secondary line. We would like to connect both lines to pair of Fortinet Firewalls (HA config). We have an option to configure the Fortinet's in either Active/Passive or Active/Active. They are currently setup in an Active/Active config. Each Fortinet (models: Fortinet 200D) has two WAN ports (WAN1 and WAN2). I have a number of servers that will be Inet facing (each with with Public IP assigned by my Primary ISPs IP block). My secondary ISP also has assigned up a block of external IP addresses as well. My question is during a failover scenario how does the failover happen exactly for the external IPs? I'm assuming DNS needs to be updated externally, but wondering how to configure it so that it happens automagically... hope this makes sense and appreciate any feedback from community!