EasyManua.ls Logo

Fortinet FortiWAN - Page 144

Fortinet FortiWAN
311 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Load Balancing & Fault Tolerance Tunnel Routing
Local IP : Configure local IP address for tunnels in the tunnel group. The local IP addresses here are
the localhost IP defined on the WAN links of local FortiWAN. According to the WAN type
defined on WAN links, here are several types of Local IP for options.
l
Static-IP WAN link without NAT on local side: If the WAN link of local
FortiWAN you want to employ for the tunnel is configured with a static public IP
address and there will be no NAT translation to this IP address, please select “IPv4
Address” and configure it with the static public IP address of the WAN link.
l
Static-IP WAN link with NAT on local side: If the WAN link of local FortiWAN
you want to employ for the tunnel is configured with a static IP address and there
is a NAT translation to this IP address, please select “(NAT) IP Address and
configure it with the static IP address of the WAN link.
l
Dynamic-IP WAN link without NAT on local side: If the WAN link of local
FortiWAN you want to employ for the tunnel is configured with a dynamic IP
address (Bridge Mode: PPPoE or DHCP for the WAN type) and there will be no
NAT translation to the dynamic IP address, please select “Dynamic WANx for the
configuration.
l
Dynamic-IP WAN link with NAT on local side: If the WAN link of local
FortiWAN you want to employ for the tunnel is configured with a dynamic IP
address (Bridge Mode: PPPoE or DHCP for the WAN type) and there is a NAT
translation to the dynamic IP address, please select “(NAT) Dynamic WANx” for
the configuration.
According your WAN Setting, Dynamic WAN x” and “(NAT) Dynamic WAN x” are listed in
pair in the drop-down menu to correspond all the dynamic WAN links (Bridge Mode:
PPPoE and Bridge Mode: DHCP). To avoid a TR transmission failure, please select
corresponding types for the deployments which involve NAT translating within.
If the IP addresses that ISP provides is private IP addresses (no matter they are static or
dynamic), the ISP might perform NAT translations to the private IP addresses. Please
contact with the ISP for further information.
For options "Static-IP WAN link without NAT" and "Static-IP WAN link with NAT", if a
change on the IP address of the WAN link is made (from Network Setting) on the local
FortiWAN unit, a corresponding update to the setting here is necessary (manually).
For deployment of Tunnel Routing over IPSec, make sure Local IP here is equal to the
Local IP configured to correspondent IPSec Phase 1 (See "IPSec - Define routing policies
for an IPSec VPN").
144 FortiWAN Handbook
Fortinet Technologies Inc.

Table of Contents

Other manuals for Fortinet FortiWAN

Related product manuals