Specifications

IPv4 and IPv6 Internet and WAN Settings
40
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
Note: If your ISP requires MAC authentication and another MAC address has
been previously registered with your ISP, you need to enter that
address on the WAN Advanced Options screen for the WAN interface
(see Configure Advanced WAN Options and Other Tasks on page 71).
Configure Load Balancing or Auto-Rollover for IPv4
Interfaces
You can configure the VPN firewall’s IPv4 interfaces on a mutually exclusive basis for either
auto-rollover (for increased system reliability) or load balancing (for maximum bandwidth
efficiency). If you do not select load balancing, you need to specify one WAN interface as the
primary interface.
The VPN firewall supports the following modes for IPv4 interfaces:
Load balancing mode. The VPN firewall distributes the outbound traf
fic equally among
the WAN interfaces that are functional. You can configure up to four WAN interfaces. The
VPN firewall supports weighted load balancing and round-robin load balancing (see
Configure Load Balancing Mode and Optional Protocol Binding for IPv4 Interfaces on
page 41).
Note: Scenarios could arise in which load balancing needs to be bypassed
for certain traffic or applications. If certain traffic needs to travel on a
specific WAN interface, configure protocol binding rules for that
WAN interface. The rule should match the desired traffic.
Primary WAN mode
. The selected WAN interface is made the primary interface. The
other three interfaces are disabled.
Auto-rollover mode. The selected W
AN interface is defined as the primary link, and
another interface needs to be defined as the rollover link. The remaining two interfaces
are disabled. As long as the primary link is up, all traffic is sent over the primary link.
When the primary link goes down, the rollover link is brought up to send the traffic. When
the primary link comes back up, traffic automatically rolls back to the original primary link.
If you want to use a redundant ISP link for backup purposes, select the WAN port that
should function as the primary link for this mode. Ensure that the backup W
AN port has
also been configured and that you configure the W
AN failure detection method on the
WAN Advanced Options screen to support auto-rollover (see Configure the Auto-Rollover
Mode and Failure Detection Method for IPv4 Interfaces on page 45).
Note: If the VPN firewall functions in IPv4 / IPv6 mode, you cannot
configure load balancing.