I have a problem of trying to get automatic switching of traffic onto a VPN tunnel if the Primary LL/Sat link fails.
The current scenario is like this:
The firewall is connected to a layer 2 LAN switch, the WAN router that host the Leased Line/Sat link is also connected to the same LAN switch as the Firewall.
In cases where the LL/Sat fails, the traffic is manually forced to use the VPN tunnel by unplugging the cable that connects the Telecom DTU to the router serial interface. The traffic is not switching automatically to the VPN tunnel.
I need to make this happen automatically, and to avoid the mannual way of forcing the traffic to the VPN tunnel.
I have attached a drawing of how I want to reconnect the devices. Please confirm if this type of design is recommended or not. I also would like some help on how to configure automatic switching of the traffic if one fails.