Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Convinced of the method of firewall multi-exit

2025-01-16 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

The company uses a convincing firewall, supports multiple WAN ports, and supports a variety of different ways to load, so how do we implement it?

First of all, you need to fill in the IP address into the interface and configure it correctly so that the device can surf the Internet.

1. Static routes need to be configured. Here I only show the exit routes, that is, do two default routes of 0.0.0.0 0.0.0.0, pointing to the gateways of China Telecom and China Unicom, respectively.

two。 After being able to access the Internet, we specify that some specific machines use only one SP at the policy routing office. For example, the Finance Department needs to use Internet Banking. If they also use two dynamic SP, it will prompt an error, resulting in the normal use of Internet Banking.

3. Multi-line rule setting, after several tests, we now use the bandwidth ratio to do the multi-line strategy, such as the company uses 100m telecom, 50m Unicom, use this strategy. The user traffic of 2max 3 will be distributed to China Telecom, and the user traffic of 1max 3 will be distributed to China Unicom. In this way, the utilization of bandwidth can be maximized. The total bandwidth traffic can be greater than 100m, which is equivalent to overlapping the bandwidth of two external network links.

Some people may ask, if I only use two external lines of bandwidth, I can manually allocate them. For example, if the IP of 2x3 is allocated to telecom lines and the users of 1x3 are allocated to Unicom lines, can not we also make use of the bandwidth of the two external lines to make them superimposed? One of the advantages of using a convincing bandwidth ratio is that when an external link is disconnected, all intranet users will switch to the link that can be used, so that intranet users will not be unable to access the network. If specified manually, when an external line fails, users who use the external line will not be able to access the Internet.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report