ProSecure Unified Threat Management (UTM) Appliance Reference Manual

For a single WAN gateway configuration, use a FQDN when the IP address is dynamic and either an FQDN or the IP address itself when the IP address is fixed. The situation is different in dual- WAN port gateway configurations.

Dual WAN Ports in Auto-Rollover Mode. A dual-WAN port auto-rollover gateway configuration is different from a single-WAN port gateway configuration when you specify the IP address of the VPN tunnel endpoint. Only one WAN port is active at a time and when it rolls over, the IP address of the active WAN port always changes. Therefore, the use of an FQDN is always required, even when the IP address of each WAN port is fixed.

Note: When the UTM’s WAN port rolls over, the VPN tunnel collapses and must be re-established using the new WAN IP address. However, you can configure automatic IPsec VPN rollover to ensure that an IPsec VPN tunnel is re- established.

Figure B-7

Dual WAN Ports in Load Balancing Mode. A dual-WAN port load balancing gateway configuration is the same as a single-WAN port configuration when you specify the IP address of the VPN tunnel endpoint. Each IP address is either fixed or dynamic based on the ISP: you must use FQDNs when the IP address is dynamic and FQDNs are optional when the IP address is static.

Figure B-8

B-10

Network Planning for Dual WAN Ports (Dual-WAN Port Models Only)

v1.0, January 2010

Page 436
Image 436
NETGEAR UTM50-100NAS, UTM5-100NAS manual Figure B-7