[nsp] OSPF x firewall

Ives Dekoninck Ives.Dekoninck at eu.didata.com
Wed Dec 31 02:38:11 EST 2003


Hi, Dimitri

IF you need two routers to talk a dynamic routing protocol with a FW in
the middle, I would suggest running BGP between the two.

The advantage of BGP is that you don't need to be on the same subnet as
long as it knows the route (static route) to the neighbour. The other
advantage of running BGP is that on the firewall you only need to open
TCP port 179 from the inside to the outside network.

Hope this helps,

-Ives-



More information about the cisco-nsp mailing list