I have a little challenge at work.
We have a AWS Direct Connect (DxC) through a provider, meaning that we are tenants and we do not control the BGP towards AWS (we give the provider the networks and they advertise them to AWS through their router). So the connection goes:
The VPN as usual can be made with BGP, no problem, since our FW has direct internet connection, no problem there.
The issue is: how do I make a failover from the DxC towards the VPN connections?
So, in summary
The pickle:
Point in favour:
What I want to do:
Any ideas?
Hello FortDoog,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.