Hi all,
I'm writing after a v17 to v18 migration, I have read and watched Sophos videos and I'm starting to get an idea of the main changes in the traffic management rules BUT, I wanted to be sure that I'm not missing something in the "concept" and to avoid mistakes in all the NAT - Firewall Rules and migrated SD-WAN Policy routing that now I have to workout to clean all this mess that is bumped up after the upgrade.
Please keep in consideration that I'm in a Active-Passive XG330 cluster scenario with dual ISP WAN ports. The main use of the second ISP is only as backup so, switching traffic when the main traffic goes down, with a lot of exceptions that I don't mention here but that's the main use.
The routing order is
SD-WAN
VPN routes
STATIC
The first main question for me is ( please tell me if I'm wrong ):
Do I have to replicate every firewall rule in the SD-WAN policy routing, if I need to manage link failover in it?
EXAMPLE:
LAN to WAN - Access to internet only with specific port list and other options ( IPS,etc) that I want to failover from ISP1 to ISP2
Thanks in advance,
Simo
This thread was automatically locked due to age.