McAfee SG310 Administration Manual page 68

Utm firewall
Table of Contents

Advertisement

Network Setup menu options
Failover, load balancing, and high availability
• Internet Connection Failover — A backup, redundant Internet connection (or connections) that is only
established should the primary link lose connectivity. See
• Load Balancing — Another Internet connection (or connections) concurrently with the primary link, for
spreading network load over multiple connections. See
• High Availability — A backup, redundant UTM Firewall appliance to monitor the status of the primary
appliance, coming online and becoming the Internet gateway for your network should the primary
appliance fail. See
The configuration shown in
and a CSU/DSU (Channel Service Unit/Data Service Unit required for T1 and T3 lines) to two different ISPs
(Internet Service Providers).
Figure 67 Failover, load balancing, and high availability configuration
Configure all Internet connections to use in conjunction with the Internet availability services. Secondary
and tertiary Internet connections are configured in the same manner as the primary Internet connection, as
detailed in the sections Direction Connection, ADSL, Cable Modem, and Dialout/ISDN earlier in this chapter.
See
Direct connection
connection on the COM
under which the Internet connections are established.
If you are using a UTM Firewall model SG560, SG560U, SG565, or SG580, you might want to skip to
information on establishing multiple broadband connections. See
Note:
If you have configured the switch of your SG560, SG560U, SG565, or SG580 as separate ports, and are
establishing multiple PPPoE ADSL Internet connections using two or more of these ports, it is important that each
port A is connected to a remote device (DSLAM) with a unique MAC address, since the DSLAM may use the same
MAC address for all DSL connections. Duplicate MAC address issues are still possible even if each of the Internet
connections are through different ISPs, as often multiple ISPs share the same DSLAM. If your ISPs are unable to
correct the issue, set the second and subsequent ADSL modems connected to the A port switch to routing or NAT
rather than bridged mode to hide the duplicate MAC address from the UTM Firewall appliance. Typically, this
means the ADSL modem terminates the PPPoE connection, and the appliance is configured with DHCP or
manually assigned settings, using the ADSL modem as a gateway.
68
McAfee UTM Firewall 4.0.4 Administration Guide
High
Availability.
Figure 67
illustrates a UTM Firewall appliance that connects via an ADSL modem
overview, ADSL,
Connecting with a cable
port. Once the Internet connections have been configured, specify the conditions
Internet connection
failover.
Load
balancing.
modem, and
Configuring a dialout
Port-Based
VLANs.

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sg560Sg560uSg565Sg580

Table of Contents