OSPF as IGP for HA

Started by vgstech, May 06, 2024, 08:43:20 AM

Previous topic - Next topic
You must run iBGP for the external "failover", i.e. for both nodes to share their view of "the Internet".

You can run an additional IGP like OSPF to distribute e.g. /29s or other prefixes routed to customers or connected VLANs for hosting etc. etc.

You should

- not redistribute your IGP into BGP
- create a stable NULL route on each node for the prefix of your entire AS to announce that via BGP
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)

Quote from: vgstech on May 07, 2024, 02:13:42 PM
Correct, bimbar. That's the schema we are developing, but instead of "WAN ROUTER," it will be an "Opnsense FW." The carriers provide routers 1 and 2, so I don't have to deal with that piece apart from configuring the BGP from the FWs to the routers.

Did you configure OPNSense in a similar scenario in the past?


Thanks!

No, the WAN router would be the carrier router, yours woule be "Router".