My firewall A will be connecte with Router A and use the OSPF.
Only firwall interface that is connected with router will use the OSPF and interface that is connected with switch will have the static routes.
I will redistrubte the static rotues into the OSPF domain via my firewall.
All internet will be use by the Firewall C. Now the problem is that I am not able to find out which interface should i put in ospf domain, If i will put outside interface in ospf domain, i have to make static and acl for all entries that are coming from OSPF domain. bcz Enterprise network will use Internet via Firewall C as mention in the diagram.
what do u think about no-nat-control and nonat solution.
Any solution regarding this will be highly helpful.
In many instances, you need to enable routing on the Firewall to connect to devices on networks that are not directly connected. This is accomplished by manually configuring static routes or by using Open Shortest Path First (OSPF) to dynamically learn routes.redistribution of firewall routes was separated from static routes.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...