Monday, June 7, 2021

null0 static route created on FTD for all remote VPN users? Why?

So I recently got a job as a junior network engineer and I have been going through my company's FMC configs. I have noticed that for FTD which hosts remote VPN users(anyconnect) there is a static rule which has a network( all VPN users IP) and interface( Null0) and the second route is basically any IPv4 with our ISP's as a gateway.

My question is what is the reason we are using the null0 route. I asked my senior engineer and he told me something about BGP routes and not needing to advertise all specific routes. I quite did not get his explanation.

I know the question is kind of vague but let me know if you need further clarifications



No comments:

Post a Comment