Netgear FVS336G-300NAS Specifications Page 633

  • Download
  • Add to my manuals
  • Print
  • Page
    / 693
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 632
Network Planning for Multiple WAN Ports
633
ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv3
You can configure two WAN ports on a mutually exclusive basis to do either of the following:
Auto-rollover for increased reliability
Load balance for outgoing traffic
These various types of traffic and auto-rollover or load balancing, which are listed below, all
interact to make the planning process more challenging:
Inbound traffic. Unrequested incoming traffic can be directed to a computer on your LAN
rather than being discarded. The mechanism for making the IP address public depends
on whether the dual WAN ports are configured for auto-rollover or load balancing.
Virtual private networks. A virtual private network (VPN) tunnel provides a secure
communication channel either between two gateway VPN firewalls or between a remote
computer client and gateway VPN firewall. As a result, the IP address of at least one of
the tunnel endpoints must be known in advance for the other tunnel endpoint to establish
(or reestablish) the VPN tunnel.
Note: When the VPN firewall’s WAN port rolls over, the VPN tunnel closes
and must be reestablished using the new WAN IP address. However,
you can configure automatic IPSec VPN rollover to ensure that an
IPSec VPN tunnel is reestablished.
Dual WAN ports in auto-rollover mode. Rollover for a VPN firewall with dual WAN
ports is different from a single WAN port gateway configuration when you specify the IP
address. Only one WAN port is active at a time, and when it rolls over, the IP address of
the active WAN port always changes. Therefore, the use of a fully qualified domain name
(FQDN) is always required, even when the IP address of each WAN port is fixed.
Figure 14. Dual WAN ports in auto-rollover mode
Features such as multiple exposed hosts are not supported in auto-rollover mode
because the IP addresses of each WAN port must be in the identical range of fixed
addresses.
Dual WAN ports in load balancing mode. Load balancing for a VPN firewall with dual
WAN ports is similar to a single WAN gateway configuration when you specify the IP
address. Each IP address is either fixed or dynamic based on the ISP: You must use
FQDNs when the IP address is dynamic, but FQDNs are optional when the IP address is
static.
Page view 632
1 2 ... 628 629 630 631 632 633 634 635 636 637 638 ... 692 693

Comments to this Manuals

No comments