Network Planning for Multiple WAN Ports (IPv4 Only)
410
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Figure 261.
Inbound Traffic to a Dual WAN Port System
The IP address range of the VPN firewall’s WAN port needs to be both fixed and public so
that the public can send incoming traffic to the multiple exposed hosts when this feature is
supported and enabled.
Inbound Traffic: Dual WAN Ports for Improved Reliability
In a dual WAN port auto-rollover configuration, the WAN port’s IP address always changes
when a rollover occurs. You need to use an FQDN that toggles between the IP addresses of
the WAN ports (that is, WAN1 or WAN2).
Figure 262.
Inbound Traffic: Dual WAN Ports for Load Balancing
In a dual WAN port load balancing configuration, the Internet address of each WAN port is
either fixed if the IP address is fixed or an FQDN if the IP address is dynamic (see the
following figure).
Note: Load balancing is implemented for outgoing traffic and not for
incoming traffic. Consider making one of the WAN port Internet
addresses public and keeping the other one private in order to
maintain better control of WAN port traffic.