Has anyone successfully set up scenario with multilple paths from the user side to a DMZ behind a firewall without running into issues with asymmetric routing? Here is the network. Users are in a VRRP connected vlan to two core routers. Each core has a routed link to a firewall. The ospf path cost back to the user is equal. With asymmetric routing on the return session the users intermittently lose connectivity to the servers. Is this a common problem with all firewalls. The firewall does not send traffic back through the same physical port that originated it. I haven't tried forcing traffic back on one link by increasing the path cost of the other but that will defeat the load sharing of links for the return traffic.
thnks in advance
vnt90
thnks in advance
vnt90