Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

how to configure an IPsec VPN failover with 2 gateways on each end

Help me create an IPSEC failover for a headquarters and branch office with 2 gateways each. I would like to create a high availability scenario, as the links in both locations fluctuate a lot.

I thought about doing it like this:

The Branch initiates and the Headquarters responds.

ISP1 (Branch)      <>  ISP1 (headquarters)
ISP2 (Branch)


ISP1 (Branch)     <>   ISP2 (headquarters)
ISP2 (Branch)

In this scenario I am considering that Matrix would respond to any of the gateways that initiate.

But I also thought about this other scenario:

ISP1 (Branch) <> ISP1 (headquarters)
ISP2 (Branch) <> ISP1 (headquarters)
ISP1 (Branch) <> ISP2 (headquarters)
ISP2 (Branch) <> ISP2 (headquarters)

I'm in doubt whether 4:2 or 4:4 serial connections.



This thread was automatically locked due to age.