Hi All, I am working on the following HA design - As you can see above, each firewall will have two interfaces connected to Juniper routers on the inside and outside zones. The firewall peers will also be directly connected to each other for the HA links. The plan is to use Active/Passive deployment and I am trying to figure out if this design can be achieved without any Layer 2 switches. The main question I have is around exchange of hello messages and link monitoring. How do the firewall peers exchnage these messages if there is no L2 switch in the topolocy? Is that done over HA links? Would this design not work due to the missing L2 switch?
... View more