Quick Reference Guide

Table Of Contents
Appendix B: Network Planning for Dual WAN Ports | 179
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
The addressing of the VPN firewall’s dual WAN port depends on the configuration being
implemented:
Inbound Traffic to Single WAN Port (Reference Case)
The Internet IP address of the VPN firewall’s WAN port must be known to the public so that
the public can send incoming traffic to the exposed host when this feature is supported and
enabled.
In the single WAN case, the WAN’s Internet address is either fixed IP or a fully-qualified
domain name if the IP address is dynamic.
Figure B-4 Inbound Traffic to a Single WAN Port
Inbound Traffic to Dual WAN Port Systems
The IP address range of the VPN firewall’s WAN port must be both fixed and public so that
the public can send incoming traffic to the multiple exposed hosts when this feature is
supported and enabled.
Table B-1. IP addressing requirements for exposed hosts in dual WAN port systems
Configuration and
WAN IP address
Single WAN Port
(reference case)
Dual WAN Port Cases
Rollover Load Balancing
Inbound traffic
Port forwarding
Port triggering
Fixed Allowed
(FQDN optional)
FQDN required Allowed
(FQDN optional)
Dynamic FQDN required FQDN required FQDN required