You might be better off shedding the routing/failover portion of your scenario to an upstream router. Just let the firewall do what it does best (filter and forward) - instead of forcing it to do Policy Routing.
Cable/DSL Internet--------->Router--------Firewall T1 Internet------------------^ HTH, Aaron T. Rohyans Director of Information Systems IDC-USA [EMAIL PROTECTED] -----Original Message----- From: Kurt Buff [mailto:[EMAIL PROTECTED] Sent: Wednesday, January 02, 2008 11:06 AM To: NT System Admin Issues Subject: Re: Recommendation of a firewall with these features ? BSD with PF + ALTQ? On 1/2/08, Oliver Marshall <[EMAIL PROTECTED]> wrote: > > > > Hi chaps, > > > > Can anyone recommend a firewall that supports a primary and a secondary wan > interface and supports fail over from the primary to the secondary as well > as being able to route certain kinds of traffic over the secondary line > during normal usage. > > > > Ie. If the primary goes down, use the secondary line (fairly standard). When > the primary is working, send any HTTP traffic over the secondary (cheaper) > line and any (in this case) FTP/EMAIL traffic over the primary line. > > > > So far the only one I know of is the Watchguard X550. Something cheaper > would be super J > > > > Olly > > > > > > > > > > > ~ Upgrade to Next Generation Antispam/Antivirus with Ninja! ~ ~ <http://www.sunbelt-software.com/SunbeltMessagingNinja.cfm> ~ ~ Upgrade to Next Generation Antispam/Antivirus with Ninja! ~ ~ <http://www.sunbelt-software.com/SunbeltMessagingNinja.cfm> ~
