Network Planning for Dual WAN Ports (Multiple WAN Port Models Only)
632
ProSecure Unified Threat Management (UTM) Appliance
Figure 368.
The purpose of the FQDN in this case is to toggle the domain name of the gateway firewall
between the IP addresses of the active WAN port (that is, WAN1 and WAN2) so that the
remote VPN client can determine the gateway IP address to establish or reestablish a VPN
tunnel.
VPN Road Warrior: Dual-Gateway WAN Ports for Load Balancing
In a dual WAN port load balancing gateway configuration, the remote VPN client initiates the
VPN tunnel with the appropriate gateway WAN port (that is, port WAN1 or WAN2 as
necessary to balance the loads of the two gateway WAN ports) because the IP address of the
active WAN port is not known in advance. The selected gateway WAN port needs to function
as the responder.
Figure 369.
The IP addresses of the gateway WAN ports can be either fixed or dynamic. If an IP address
is dynamic, you need to use an FQDN. If an IP address is fixed, an FQDN is optional.