This chapter describes how to use the virtual private networking (VPN) features of the ProSafe
VPN Firewall 200 FVX538.
This chapter includes the following sections:
•
"Considerations for Dual WAN Port
•
•
•
•
•
•
•
•
Considerations for Dual WAN Port Systems
If both of the WAN ports of the VPN firewall are configured, you can enable either Auto-Rollover
mode for increased system reliability or Load Balancing mode for optimum bandwidth efficiency.
This WAN mode choice impacts how the VPN features must be configured.
The use of fully qualified domain names in VPN policies is mandatory when the WAN ports are in
load balancing or rollover mode; and is also required for the VPN tunnels to fail over. FQDN is
optional when the WAN ports are in load balancing mode if the IP addresses are static but
mandatory if the WAN IP addresses are dynamic.
Refer to
"Virtual Private Networks (VPNs)" on page B-9
requirements for VPN in the dual WAN modes. For instructions on how to select and configure a
dynamic DNS service for resolving FQDNs, see
page
2-14. For instructions on WAN mode configuration, see
(Required for Dual WAN)" on page
Virtual Private Networking
Systems" on this page
for more on the IP addressing
"Configuring Dynamic DNS (Optional)" on
2-7.
v1.0, January 2010
Chapter 5
"Configuring the WAN Mode
5-1