Switch Redundancy for my firewall cluster

Dear (Cisco) guru,

I'm new to switch/router. Want to elimate every single point of failure for my network topology. Planning to have firewall cluster and switch redundancy

Environment:

  • Check Point - Unlimited x2 (SecurePlatform)
  • ClusterXL
  • Cisco 29XX switch x 4 (two upstream & two downstream)

Questions,

  1. How the network topology looks like?

  1. Do we need L4-7 Switch in order to do so? as per the network diagram from Cisco
    formatting link

  1. Do we need a delegate/physical connection from each firewall member/node to two upstream switches and two downstream switches?

  1. If so, how is it possible? Because Check Point is running as router mode and it means each physical ports will carry different segments and we have to set up two different segments for each ports connecting to two upstream switches and so do for the downstream switches in order to do the "Cross" effect.

  2. Do we need to enable ISL trunking in the switches instead? (and how)

Any ideas will be appreciated.

thanks in advance, Nick

Reply to
Nick Brandson
Loading thread data ...

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.