GAJSHIELD INFOTECH PVT LTD WAN Fail-Over for Internet Browsing. Administrative Guide

Similar documents
GajShield UTM Series uide uick Start G Q

D-Link (Europe) Ltd. 4 th Floor Merit House Edgware Road London HA7 1DP U.K. Tel: Fax:

How to open ports in the DSL router firmware version 2.xx and above

Unified Threat Management

Table of Contents. CRA-200 Analog Telephone Adapter 2 x Ethernet Port + 2 x VoIP Line. Quick Installation Guide. CRA-200 Quick Installation Guide

Barracuda Link Balancer

Unified Threat Management

Load Balancing Censornet USS Gateway. Deployment Guide v Copyright Loadbalancer.org

Step 3 - How to Configure Basic System Settings

Load Balancing Web Proxies / Filters / Gateways. Deployment Guide v Copyright Loadbalancer.org

CONFIGURATION MANUAL. English version

300M Wireless-N Broadband Router User Manual

Cyberoam Virtual Security Appliance - Installation Guide for VMware Player. Version 10

G806+H3C WSR realize VPN networking

Endian Proxy / Firewall

I m InTouch Installation Guide for the DSL/Cable environment with a Linksys router Models: BEFSRU31, BEFSR41 V.2, BEFSR11

UNIBOX. Hotspot Management Application. Quick Start Guide

Unified Threat Management

[Pick the date] DS-300 Configuration Guide v 5.7

Load Balancing Bloxx Web Filter. Deployment Guide v Copyright Loadbalancer.org

WIALAN Technologies, Inc. Unit Configuration Thursday, March 24, 2005 Version 1.1

EdgeXOS Platform QuickStart Guide

Digi Connect WAN / ConnectPort WAN Cellular Setup of Surelink

CHAPTER 7 ADVANCED ADMINISTRATION PC

Network Controller 3500 Quick Start Guide

User Guide TL-R470T+/TL-R480T REV9.0.2

HS5200 Series AAA Hotspot Solutions

SonicWALL Security Appliances. SonicWALL SSL-VPN 200 Getting Started Guide

Using Diagnostic Tools

Connecting the DI-804V Broadband Router to your network

Configure 6in4 Tunnel in pfsense. Lawrence E. Hughes. 18 November 2017

Cradlepoint to Palo Alto VPN Example. Summary. Standard IPSec VPN Topology. Global Leader in 4G LTE Network Solutions

IP806GA/GB Wireless ADSL Router

D810R ADSL2+ Router User Guide

Step-by-Step Configuration

Configuring PPP And SIP

Support for policy-based routing applies to the Barracuda Web Security Gateway running version 6.x only.

CYAN SECURE WEB Installing on Windows

Table of Contents 1 V3 & V4 Appliance Quick Start V4 Appliance Reference...3

3. In the upper left hand corner, click the Barracuda logo ( ) then click Settings 4. Select the check box for SPoE as default.

EN-1000 Quick Configuration Guide

AirLive RS Security Bandwidth Management. Quick Setup Guide

HTG XROADS NETWORKS. Network Appliance How To Guide: PPTP Client. How To Guide

Please read instructions thoroughly before operation and retain it for future reference.

On the left hand side of the screen, click on Setup Wizard and go through the Wizard.

Comodo Dome Data Protection Software Version 3.8

Step-by-Step Configuration

The Administration Tab - Diagnostics

Please read instructions thoroughly before operation and retain it for future reference.

Setting up L2TP Over IPSec Server for remote access to LAN

VIEVU DOCKING STATION USER GUIDE

Scan-to- . Copytech s guide to setting up Scan-to- on Konica Minolta M FDs

Link Gateway Initial Configuration Manual

EN6200 Series Feature Sheet

Cisco Cloud Web Security

Troubleshooting Guide ir Advance Series

Grandstream IP Phone Configuration Guides

Ready Security User Guide

AT&T SD-WAN Network Based service quick start guide

Technical Support Information

Peplink Balance Multi-WAN Routers

Step-by-Step Configuration

Lab 1: Creating Secure Architectures (Revision)

Example - Configuring a Site-to-Site IPsec VPN Tunnel

LevelOne FBR User s Manual. 1W, 4L 10/100 Mbps ADSL Router. Ver

SonicOS Enhanced Release Notes

Grandstream Networks, Inc. GWN7000 Command Line Guide

ecopy ShareScan v4.2 for ecopy ScanStation Pre-Installation Checklist

SonicWALL / Toshiba General Installation Guide

Checklist. Version 2.0 October 2015

Skandocs Installation and Connectivity Guide What you need to know to successfully utilise the Internet connectivity in Skandocs

The OSI Model. Level 3 Unit 9 Computer Networks

Configuration examples for the D-Link NetDefend Firewall series DFL-210/800/1600/2500

INBOUND AND OUTBOUND NAT

Port Forwarding Setup (RTA1025W)

Manual of Wireless Access Point

Chapter 3 LAN Configuration

Lab 2: Creating Secure Architectures

F.A.Q for TW100-S4W1CA

WIRELESS CPE/AP 5G OUTDOOR 300MBPS WL-CPE5G48-058

Using SSL to Secure Client/Server Connections

ADSL Router Quick Setup Guide

DEPLOYMENT GUIDE DEPLOYING F5 WITH ORACLE ACCESS MANAGER

Configuration Guide TL-ER5120/TL-ER6020/TL-ER REV3.0.0

All configuration in this document refers to the EZ Setup section.

Chapter 5 Advanced Configuration

A5500 Configuration Guide

Light Mesh AP. User s Guide. 2009/2/20 v1.0 draft

How to Configure and Use High Availability

AirCruiser G Wireless Router GN-BR01G

Dual WAN VPN Firewall VPN 3000 User s Guide. Version 1.0 Date : 1 July 2005 Please check for the latest version

Virtual Communications Express VCE over LTE User Guide

Microsoft Microsoft TS: MS Internet Security & Acceleration Server 2006, Configuring. Practice Test. Version:

Gigabit SSL VPN Security Router

KX GPRS M2M I-NET. User s Guide. Version: 1.0. Date: March 17, KORTEX PSI 3 Bd Albert Camus Tel:

Configuration and Operation Manual

1 Setting Up GroupWise to Work with

How to Configure Guest Access with the Ticketing System

User Manual v beronet GmbH

Load Balancing RSA Authentication Manager. Deployment Guide v Copyright Loadbalancer.org, Inc

Transcription:

GAJSHIELD INFOTECH PVT LTD WAN Fail-Over for Internet Browsing Administrative Guide 1

WAN Fail-Over for Internet Browsing Administrative Guide GajShield Infotech Pvt. Ltd. 4, Peninsula Centre Parel Mumbai India 400010 Phone +91 22 66607450 Fax +91 22 66607454 2

Configuring ISP Fail-Over for Internet Browsing You will learn to configure ISP Fail-Over for Internet Browsing with GajShield UPTM in this guide. This section is used to make settings for enabling the link failover function. We are assuming that you had already configured the ISP1 as a default gateway for GajShield UPTM and ISP2 as a secondary ISP. Now we will learn how to configure Internet Browsing Failover in Transparent as well as in Proxy mode. For this click on NETWORK - Advance - WAN Failover Here, we have to give target IP s to which firewall will send request (ping) continuously from both ISP s. When ISP1 down then it will wait for 2 sec and same request will pass to another ISP. Make sure that whatever target ip s you are configuring that should be ping from all the ISP s which you are configuring on GajShield UPTM. (Note: Third Target IP is optional) 3

Admin->Utility->Debug Network The Debug Network option provides a rudimentary set of network tools that can be used from the web interface which includes ping, traceroute and ARP. The results displayed helps checking network connectivity For ping DNS hostname or IP address and click Start. If you simply click on ARP it shows the ARP cache and for getting ARP of a specific system provides the IP address of that machine. To check the target ip s which we had configured in NETWORK - Advance - WAN Failover are pinging or not from both the IPS s i.e. in our e.g. first we will check the ping to 4.2.2.2 ip from the ISP VSNL 4

And then check the ping to 4.2.2.2 ip from the ISP MTNL Other target ip ping you can check by following the above procedure. 5

Admin->Settings->Email Now we will configure the email alerts for WAN Failover i.e. whenever any ISP goes down GajShield UPTM will sends the email alerts to the email id s which you had configured in Email Settings Configure Email Settings: Default Admin Email ID: In this option configure Email addresses where the alerts should be send SMTP Server IP: to which server these alerts should be sent. SMTP server i.e. mail server can be local or hosted on internet (recommended mail server is Local Mail server). Email ID For Service Alerts: From which email id alerts will come SMTP Server Login: If your outgoing mails requires authentication then you have to provide login name and password information. SMTP Server Password: Password of the user which created on the mail server for GajShield UPTM. 6

Proxy authentication with local users [with Wan Fail-over] : In this section we will learn how to configure your proxy authentication on GajShield UPTM. For same you need to select local in Proxy Authentication Scheme. Click on local authentication Proxy Authentication Scheme as you can see in below screenshot: 7

You need to create user on GajShield UPTM, as user authenticate we had selected as Local while configuring proxy settings. To do this follow below procedure to create user please follow the screenshots below and after then you need to restart your proxy service. To restart the proxy service on GajShield UPTM click on BROWSING - Setup Start Proxy and click on restart button. 8

Below are the policies which will require for configuring GajShield UPTM in Proxy Mode with the WAN Failover. 1 st rule created is for your local network access GajShield UPTM local LAN ip on the proxy port (Port which you had configured in BROWSING Setup Browsing Options) 2 nd rule created is for ports which normally require i.e. https, http and dnsudp ports to allow from GajShield UPTM to the Internet in this rule we had also configure Failover by selecting Link 1 as VSNL and if VSNL link goes down then all Internet browsing traffic shift to the ISP MTNL and once VSNL link comes up the Internet Browsing traffic shifts back to the VSNL ISP. Click on Install Polices once you created above two rules to apply on GajShield UPTM. NOTE:-- In local authenticate mode you need to do proxy setting in client s browser. 9

Transparent mode with proxy [ with WAN Fail-over ]: In Transparent proxy mode all Internet traffic flow through the GajShield UPTM. In transparent proxy mode user authentication not possible, authentication is purely IP based. So in this mode you don't need to create local user or you don't need to do browsing setting on client s browser. Configure rules in policies and configure firewall ip address as a gateway in local system. On firewall in Browsing --- users setting --- users, you need to provide IP ' s in your network, so you can achieve ip based authentication and imposed the Site and MIME Blocking policies. Below screenshot explains the policies which will require to configure Transparent mode proxy with WAN Failover Here in first rule we had opened http-transparent-proxy, https and dnsudp ports from local network to the Internet with WAN Failover And in second rule created is for to allow GajShield UPTM to resolve dns on the Internet with WAN failover. Note: In Transparent mode Internet access users have to use GajShield UPTM Local LAN ip as the gateway and DNS server entries provided by the ISP. If you don t want to use ISP DNS then you can use GajShield UPTM Local LAN ip as a DNS server but for this you need to configure third rule (which is already configured on above screenshot). 10