RE: [nsp] routing issue multiple gate to internet

From: Marcus Keane (mkeane@microsoft.com)
Date: Sun Mar 03 2002 - 19:20:40 EST


Akber, I'm not sure if I understand your topology correctly, but I have
two questions: 1) are you running an IGP between the HO and remote
sites? and 2) Have you excluded traffic between the mail server and the
remote sites from your policy routing?
Marcus.
        -----Original Message-----
        From: akberm [mailto:akberm@emirates.net.ae]
        Sent: 04 March 2002 03:33
        To: cisco-nsp@puck.nether.net
        Subject: [nsp] routing issue multiple gate to internet
        
        
        Hi all,
        Need some help on this scenario?
         
        I have a 3640 router at HO with Serial NM card to which 2 lease
line are connected from 2 remote office.
        3640 also has a ADSL wic which connects to Internet.
        This internal network is connected to a pix firewall whose out
going interface is connected to ISDN line for allowing mail sever
traffic. Mail server is on inside interface on private ip with static
nat on firewall.
        So we have 2 internet gateway 1 through firewall and 1 through
ADSL. I need all my HTTP traffic to go through ADSL while mail traffic
through firewall. Remote office users connect to 3640 over lease-line
and access mail server (exchange server) and some applications running
at HO.
         
        Here is the problem I am facing.
        I have given gateway on mail server as 3640 FE and put a default
route on 3640 to route all traffic to pix inside interface.
        After configuring this all my HTTP traffic and mail traffic goes
through pix-ISDN which is not the requirement. I need only mail traffic
through firewall rest all through ADSL.
        So I put a default route on 3640 to route everything to ADSL and
put a source based routing to put mail server traffic on Firewall-ISDN.
        This works fine with local LAN but the remote office users over
lease-line are not able to connect to mail server or application sever
in HO.
         
        Please help
        TIA
        Akber Mirza
         
         



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:13:07 EDT