On Wed, 22 Sep 2004 09:48:40 -0500, "Phillip Windell" <@.> wrote:
>Alright...Bill and Jeff are saying opposite things <spank spank> let's get
>it together,..what'll it be guys ;-)
We're not really, but I didn't put in much detail.
>Actually for me, the description was written too confusing, so I decided to
>just "lurk" and see what happened.
It is confusing. As I read it, the OP had two firewalls in a cluster
and wanted some traffic to go to one firewall, and other traffic to go
to the other, using the system described as a gateway. He had three
IP addresses on three NICs, all in the same logical network, which
wouldn't ever route anyway.
My response was that he should be able to do this, but he's going to
need to change IP's, use proper routes, and likely configure his
clustered firewall. As he described it he cannot do it, for the
reasons Bill suggests as well as the fact that three NICs that are all
in the same logical network will never send anything out another NIC.
My suggestion is three logical networks, one for the LAN side and one
for each firewall. He can use routes to direct what traffic he wants
to go through which firewall, but the routes aren't going to be easy
and depend on what he's wishing for the client side.
It's still a pretty convoluted setup. Perhaps is the OP told us what
they wanted to accomplish and didn't post any IP or routing info.
Jeff