Netgear FVS336Gv2 – ProSafe Dual WAN Gigabit Firewall with SSL & IPSec VPN 참조 매뉴얼

다운로드
페이지 691
 Network Planning for Multiple WAN Ports
631
 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2
Inbound Traffic to a Single WAN Port System
The Internet IP address of the VPN firewall’s WAN port must be known to the public so that 
the public can send incoming traffic to the exposed host when this feature is supported and 
enabled.
In the single WAN case, the WAN’s Internet address is either a fixed IP address or an FQDN 
if the IP address is dynamic.
Figure 16. Inbound traffic to a single WAN port system
Inbound Traffic to a Dual WAN Port System
The IP address range of the VPN firewall’s WAN port must be both fixed and public so that 
the public can send incoming traffic to the multiple exposed hosts when this feature is 
supported and enabled.
Inbound Traffic: Dual WAN Ports for Improved Reliability
In a dual WAN port auto-rollover configuration, the WAN port’s IP address always changes 
when a rollover occurs. You must use an FQDN that toggles between the IP addresses of the 
WAN ports (that is, WAN1 or WAN2).
Figure 17. Inbound traffic to a dual WAN port system in auto-rollover mode
Inbound Traffic: Dual WAN Ports for Load Balancing
In a dual WAN port load balancing configuration, the Internet address of each WAN port is 
either fixed if the IP address is fixed or an FQDN if the IP address is dynamic (see the 
following figure).