Our facility has 2 Internet connections and because of our current route config we can only utilize 1 of them. One connection is a 3660 router with 3 T1 serial interfaces configured in a Multilink. This Multilink interface connects to a MPLS network and then the Internet. The 3660 connects to a core switch.
The second internet connection is a single T1 serial connection attached to a smaller router. This router also connects to the core switch.
Our external DNS entries point to the single T1 connection so our systems can be access from the outside. We have default static route sending all traffic out this single T1. We tried removing the static route to send all traffic out the MPLS links. This worked except for the 'responses' our servers sent back to external requests also went out the MPLS links. Basically, and external request was coming in the single T1 then the response was sent out the MPLS link.
Would some form of ACL config fix this problem? We only have approximately 15 IP address's with external DNS entries.
We had to put ACL's for every server in the router attached to the MPLS network. All default traffic was routed to this router then a PBR associated with the ACL's routed specific traffic back to the other router and T1.
the suage of PBR is the fix you have implemented all in your side but other possible solutions are possible like the one I've suggested in previuos post to have the provider update its routing table to reflect the primary nature of the 3T1 multilink also for these 16 addresses
[toc:faq]The ProblemOn traditional switches whenever we have a trunk
interface we use the VLAN tag to demultiplex the VLANs. The switch needs
to determine which MAC Address table to look in for a forwarding
decision. To do this we require the switch to do...
[toc:faq]Introduction:Netdr is a tool available on a RSP720, Sup720 or
Sup32 that allows one to capture packets on the RP or SP inband. The
netdr command can be used to capture both Tx and Rx packets in the
software switching path. This is not a substitut...
IntroductionOSPF, being a link-state protocol, allows for every router
in the network to know of every link and OSPF speaker in the entire
network. From this picture each router independently runs the Shortest
Path First (SPF) algorithm to determine the b...