Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
116
Open Shortest Path First
213455-L, October 2005
Start the Check Point SmartDashboard tool and configure the following:
15a) Create a new Gateway cluster (Cluster name: Cluster_Gateway; Cluster IP
address:10.8.90.200; Enable Firewall-1).
15b) Add the two firewalls as cluster members to Cluster_Gateway.
— Select Communication > Test SIC status to get SIC connection for the first cluster
member.
— Select Topology > Get Interface with Topology to get the interface and topology.
15c) Configure the synchronization network—on the Topology page, select
1st Sync
to define
the sync interface network.
15d) Configure the virtual IP addresses for external and internal interfaces. From the Topology
page, specify the cluster IPs for the interfaces:
External interface (Name:External_If; IP:10.8.90.200)
Internal interface (Name:Internal_If; IP:200.200.200.4)
15e) Add a new rule to allow OSPF traffic and install the policy to the cluster.
16.
Configure the OSPF router.
16a) Create a router interface 1; Connect it to the external interface of the firewall
(10.8.90.200), and configure VLAN 11.
16b) Enable OSPF globally.
16c) Configure Area 0.
16d) Assign area 0 to router Interface 1.
16e) Apply and save new configuration on router.
17.
Verify your configuration.
At the firewalls: You should see the router as a neighbor and OSPF routes from the neighbor
router.
At the OSPF router: Observe the firewalls as a neighbor and OSPF routes from the firewalls.
This concludes configuring failover on the OSPF network.
>> #
/info/net/vrrp/status
(VRRP is up)
>> #
/info/net/route/ospf/neigh
(Look up the router)
>> #
/info/net/route/ospf/routes
(Look up OSPF routes)