Vpn Gateway-To-Gateway: Dual Gateway Wan Ports For Load Balancing - NETGEAR ProSafe FVS124G Reference Manual

Prosafe vpn firewall 25 with 4 gigabit lan and dual wan ports
Hide thumbs Also See for ProSafe FVS124G:
Table of Contents

Advertisement

Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
Gateway-to-Gateway Example
10.5.6.0/24
(Dual WAN Ports, After Rollover)
Gateway A
LAN IP
10.5.6.1
VPN Router
(at office A)
Figure 3-14: Dual gateway WAN ports, after rollover, for gateway-to-gateway VPN tunnels
The purpose of the fully-qualified domain names is this case is to toggle the domain name of the
failed-over gateway firewall between the IP addresses of the active WAN port (i.e., WAN_A1 and
WAN _A2 in this example) so that the other end of the tunnel has a known gateway IP address to
establish or re-establish a VPN tunnel.

VPN Gateway-to-Gateway: Dual Gateway WAN Ports for Load Balancing

In the case of the dual WAN ports on the gateway VPN firewall
gateway WAN ports at one end can be programmed in advance to initiate the VPN tunnel with the
appropriate gateway WAN port at the other end as necessary to manage the loads of the gateway
WAN ports because the IP addresses of the WAN ports are known in advance.
Gateway-to-Gateway Example
10.5.6.0/24
(Dual WAN Ports, Load Balancing)
Gateway A
LAN IP
10.5.6.1
VPN Router
(at office A)
Figure 3-15: Dual gateway WAN ports (load balancing case) for gateway-to-gateway VPN
tunnels
Network Planning
WAN_A1 IP (N/A)
WAN_A1 port inactive
X
X
netgear.dyndns.org
WAN_A2 IP
Fully-Qualified Domain Names (FQDN)
- required for Fixed IP addresses
- required for Dynamic IP addresses
One of the gateway routers must re-establish VPN tunnel after a rollover
WAN_A1 IP
netgear1.dyndns.org
netgear2.dyndns.org
WAN_A2 IP
Fully-Qualified Domain Names (FQDN)
- optional for Fixed IP addresses
- required for Dynamic IP addresses
202-10085-01, March 2005
WAN_B1 IP
Gateway B
netgearB.dyndns.org
X
X
WAN_B2 port inactive
VPN Router
WAN_B2 IP (N/A)
(at office B)
(Figure
3-15), either of the
WAN_B1 IP
Gateway B
22.23.24.25
22.23.24.26
VPN Router
WAN_B2 IP
(at office B)
172.23.9.0/24
LAN IP
172.23.9.1
172.23.9.0/24
LAN IP
172.23.9.1
3-11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fvs124gna

Table of Contents