cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Who rated this post

Cyber Elite

For firewall to be able to keep same public IP after failing over to secondary link you need to own /24 or bigger public subnet (as /24 is smallest network you can advertise into public BGP) and you need to set up BGP peering with both ISPs and advertise out your public IP range.

Without BGP peering you can't keep same public IP after failover to secondary ISP as even if ISP don't filter what source IP you send traffic into ISP 2, no traffic will be routed back to it.

Principal Architect @ Cloud Carib Ltd
Palo Alto Networks certified from 2011

View solution in original post

Who rated this post