Hi,

Installing BM3.8 on a 2 node cluster NW6.5 as described in app note
a030903.pdf from september 2003.

We are installing the BM in DMZ zone behind a Netscreen firewall and
with
only 1 network card.
I have noticed that outgoing traffic from the BorderManager is using
the
primary IP address of the node for outgoing traffic.
Is it possible to bind the BM proxy services (HTTP, FTP, ...) to a
secondary
IP address, which fails over to the active node? In that way, we could
use
"source based routing" on the Netscreen to direct all traffic from the
BM
proxy server to our ADSL line, keeping the Leased Line to the internet
free
for business critical applications (Mail, VPNs, ...)
We would probably need 2 secondary IP addresses to fail over: 1 for
incoming
client requests from the trusted zone, 1 for outgoing request from the
proxy
to the outside worls (with source based routing).

I noticed NDPS manager and also Apache (and other services) can be
bound to
use a specific secondary IP address, can this also be done with BM3.8
or is
this on the wish list for future releases?

regards

Kris