Vpn Failover - Sierra Wireless AirLink RV50 Series User Manual

Hide thumbs Also See for AirLink RV50 Series:
Table of Contents

Advertisement

ALEOS 4.9.0 Software Configuration User Guide for AirLink RV50 Series
Rev 1 Dec. 17

VPN Failover

VPN Failover is only available for IPsec VPN tunnels. To use this feature,
configure a primary and a secondary VPN tunnel. Dead Peer Detection (DPD)
verifies the status of the primary connection. If the primary VPN goes down (i.e.
DPD detects that the end device is not responding) traffic is automatically
switched to the secondary (backup) VPN tunnel. DPD continues to ping the
primary VPN responder. If configured to do so, once the primary VPN tunnel is
up, traffic automatically reverts to the primary VPN. Status fields in the
ACEmanager UI inform you of the current status of the two VPNs.
Primary VPN
AirLink gateway
DPD and VPN Failover
configured on AirLink gateway
Switch
LAN
Subnet 1
Figure 6-5: VPN Failover Configuration
To configure VPN Failover:
1. Configure two IPsec VPN tunnels. The one you want to designate as the
primary VPN must have Dead Peer Detection configured. For the Secondary
VPN, you only need to configure the remote gateway address. For other
settings, such as the local and remote subnets, the secondary VPN uses the
same settings as the primary VPN.
For instructions on configuring IPsec VPN tunnels, see
2. Go to VPN > Failover and configure the first three fields. See the table
following the screen shot for details.
3. Click Apply and reboot the AirLink gateway.
150
Secondary VPN
Two IPsec VPN tunnels are configured, but only one
is active at a time. The primary VPN is active unless DPD
determines the responder is dead. In that case, traffic is
switched to Secondary VPN.
Subnet 2
IPsec
on page 138.
41111088

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents