2.6.2VPN Planning - Fail Over

planning. The following sections demonstrate the various ways of using BiGuard 30 to setup your VPN.

2.6.2VPN Planning - Fail Over

Configuring your VPN with Fail Over allows BiGuard 30 to automatically default to WAN2 should WAN1 fail.

biguard.billion.com

192.168.3.x

192.168.2.x

200.200.200.1

BiGuard30

BiGuard10

Before Fail Over

192.168.2.x

192.168.3.x

200.200.200.1

biguard.billion.

BiGuard10

BiGuard30

After Fail Over

Because the dynamic domain name biguard.billion.com is configured for both WAN1 and WAN2, the active WAN port will announce the domain name through the WAN IP address. The remote gateway will then be able to connect to the VPN through the domain name.

In this Gateway to Gateway example, BiGuard 30 is communicating to a remote gateway using WAN1 through a secure VPN tunnel. Should WAN1 fail, outbound traffic from BiGuard 30 will automatically be redirected to WAN2. This process is completely transparent to the remote gateway, as BiGuard 30 will automatically update the domain name (biguard.billion.com) with the WAN2 IP address.

Configuring a Gateway to Multiple Gateway setup with Fail Over is similar, as shown below:

31

Page 31
Image 31
Billion Electric Company 30 user manual Before Fail Over, After Fail Over, VPN Planning - Fail Over