D-Link Forums

The Graveyard - Products No Longer Supported => D-Link NetDefend Firewalls => Topic started by: EUCC on February 23, 2010, 04:26:51 AM

Title: Problem with DFL2500 and Wans metrics
Post by: EUCC on February 23, 2010, 04:26:51 AM
Hello everybody,

I'm having a problem configurating my DFL2500. Here's the scenario: I have 2 servers in my local net which has to be accesible from outside. I also have 2 ISP's accounts, with 2 different public IP's.

I connect each connection to WAN1 and WAN2. I want to forward the traffic from WAN1 to SERVER1, and WAN2 to SERVER2. This hasbeen already done with SAT rules, and works good.

The problem comes with the metrics. If I put WAN1 metric to 90, and WAN2 metric to 100, and someone tries to reach the SERVER2 (forwarded from WAN2) I lose the traffic, because it goes out to WAN1. I ope I'm making this understandable.

If i set both metrics to 100, I lose conectivity randomly. If i set the metric to WAN2 to 90, then I lose the traffic that comes from WAN1.

So the problem is that I lose either traffic from WAN1 or WAN2 depending on the metric. Any ideas are much appreciated.

Regards

Title: Re: Problem with DFL2500 and Wans metrics
Post by: Fatman on February 23, 2010, 08:14:56 AM
You need a routing rule that states that traffic coming in the secondary interface should use a secondary routing table (where WAN2 comes first) for it's return table.