D-Link Forums
The Graveyard - Products No Longer Supported => D-Link NetDefend Firewalls => Topic started by: tecno13 on July 23, 2012, 07:24:54 AM
-
DFL-800 firmaware 2.27.03 two ISPs 1 8 public IP 2 1 public IP
configure wan1 Ethernet (8 IP):
wan1 wan1ipExtra4(81.xxx.xxx.04) wan1net(255.255.255.248) wan1GW(81.xxx.xxx.01) route metric 80
wan2 wanip(192.168.30.2) wain2net(255.255.255.0) wan2GW(192.168.30.254) route metric 80
ip rule for wan1: allow_standard-- NAT-- all_tcpudp-- Interface-- Source lan-- destination wan1-- Network Source Lanet-- Destination All-nets--
ip rule for wan2: allow_standard-- NAT-- all_tcpudp-- Interface-- Source lan-- destination wan2-- Network Source Lanet-- Destination All-nets--
would I like to use the wan2 as alone backup in case the wan1 it doesn't work where I am wrong?
-
First, calculate your network objects
I think, it will be
wan1net = 81.xxx.xxx.0/29
wan2net = 192.168.30.0/24
Next, disable autocreating of route for main interface and make it manually with ICMP monitoring only
-
excuse I have not understood well me from quì as I do to get the everything
(http://www.nsgroup.it/uploadfiles/images.gif)
-
Set CIDR networks into Objects > Address book > InterfaceAddresses for wan1/2_net
Next, make intreface group wans = wan1 + wan2 at Interfaces > Intreface groups
Change your NAT rules from wan1 to wans at Rules > IP rules > lan_to_wan1
Next, disable auto creation of default routes as wan1/2 parameters (your screen)
And last, make routes at Routing > Routing tables > main
wan1 all-nets wan1_gw 101, ICMP monitoring, ping to wan1_dns1/2
wan2 all-nets wan2_gw 102
-
Hi Alexander,
Must say a big thank you for your response (which I am just reading).
have not I understood you make me a scheme of as I have to proceed?
but the everything can be all right even if I have 8 addresses public ip
Thanks
-
I've just put example about double wan usage for load balancing.
Regarding additional IPs, what you need to implement? Assign this IP to DFL and portmap something? Put into local network? Something else?
-
I have the same problem with 2 Router from UK, but it is in config some other setup and administrator (in original description it is admin|admin user and pass)..
How can I start correct the router and configure both router fot vpn later...???
Here is copy from putty:
EM-8680 Ver.B2 2006-06-14
Starting system...
Entry point: 0x00101028, address range: 0x00100000-0x001e4000
Starting core in 0 seconds.
Press any key to abort and load boot menu
Loading fwcore.cfx
D-Link Firewall 2.11.02V
Copyright Clavister 1996-2006. All rights reserved
QuickSec SSHIPSECPM version 2.1 library 2.1
Copyright 1997-2003 SafeNet Inc
Build : Oct 30 2006
License file successfully loaded.
Configuration done
Interfaces:
wan1 IPAddr 0.0.0.0 HwAddr 0019:5b42:b77e
Builtin r8139/8129 - Realtek RTL8139 Fast Ethernet Bus 0 Slot 2 IRQ 0
wan2 IPAddr 192.168.120.254 HwAddr 0019:5b42:b77f
Builtin r8139/8129 - Realtek RTL8139 Fast Ethernet Bus 0 Slot 1 IRQ 0
dmz IPAddr 172.17.100.254 HwAddr 0019:5b42:b77d
Builtin IXP4NPE - Port 2 IRQ 0
lan IPAddr 192.168.1.1 HwAddr 0019:5b42:b77c
Builtin IXP4NPE - Port 1 IRQ 0
Previous shutdown: Unknown reason ('shutdown.txt' is empty)
System running
DFL-800:/>
User: administrator
Password: Error: No user logged in******
Password: +
EM-8680 Ver.B2 2006-06-14
Starting system...
Entry point: 0x00101028, address range: 0x00100000-0x001e4000
Starting core in 0 seconds.
Press any key to abort and load boot menu
Loading bootmenu.cfx
===============================================================
D-Link login
===============================================================
1. Start firewall
2. Login
Select menu item: 1
Loading fwcore.cfx
D-Link Firewall 2.11.02V
Copyright Clavister 1996-2006. All rights reserved
QuickSec SSHIPSECPM version 2.1 library 2.1
Copyright 1997-2003 SafeNet Inc
Build : Oct 30 2006
-
I recommend that you phone contact your regional D-Link support office and ask for help and information regarding this.
Link> Tech Support Contact Information (http://forums.dlink.com/index.php?board=635.0)
We find that phone contact has better immediate results over using email.
This forum is fairly old and hasn't been posted in for years now.
Also review the user manual as well.