Chapter 8 WAN Screens

8.5 WAN Interface to Local Host Mapping Timeout

You can set the ZyWALL to send all of a local computer’s traffic through the same WAN interface. This is useful when a redirect server forwards a user request for a file and informs the file server that a particular WAN IP address is requesting the file. If the user’s subsequent sessions came from a different WAN IP address, the file server would deny the request. Here is an example.

Figure 107 Different WAN IP Addresses

WAN 1 WAN 2

B

LAN

A

C

1LAN user A wants to download a file from a remote server on the Internet. The ZyWALL is using active/active load balancing and sends the request to an update server (B) through WAN 1.

2Update server B sends a file list to LAN user A. The download address of the desired file is a file server (C). At the same time, update server B informs file server C that a computer located at the WAN 1’s IP address will download a file.

3When LAN user A tries to retrieve the file from file server C, the request goes through WAN 2.

4File server C finds that the request comes from WAN 2’s IP address instead of WAN 1’s IP address and rejects the request.

 

169

ZyWALL 2WG User’s Guide