The original design for dual ISP with a Active / Passive was all good and using policy based forwarding and havin a switch is in place with the specified vlans.Where if the active firewall should fail the passive will take over and pass the traffic vice versa with the ISP
Diagram below , just imagine with the switch in the middle.
In a new enviroment the design has to change in the sense these two firewalls will now be in to different server rooms with individual isp connected to them running a L2 HA connectivity directly and failover should happen on an ISP level with policy based forwarding the different traffic.
Is this possible , even in a Active / Ative , below diagram without a swith involved. Your advise is highly appreciated.