So we have a client with a main office and a branch office. The offices each have an SG firewall. Main has an SG125, branch has an SG135. They have an Ethernet Private Line from their ISP and want the offices to communicate over this line for local traffic but have each location use it's own WAN connection for Internet traffic. We have successfully taken care of the LAN traffic between the sites over the EPL using eth2 on each firewall, static routes and firewall policies.
The kicker is that they also want each location's WAN to be a fail-over for each other. So that if the WAN goes out at the main office, user's HTTP and HTTPS traffic goes through the EPL connection and then out the WAN of the branch office firewall.
We have the task of trying to set this up but have never ran into this situation and may need some guidance of how best to approach this. Thank you!
This thread was automatically locked due to age.