User's Manual

Virtual Private Networking Using IPSec and L2TP Connections
197
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
The following diagrams and table show how the WAN mode selection relates to VPN
configuration.
Figure 119.
Figure 120.
The following table summarizes the WAN addressing requirements (FQDN or IP address) for
a VPN tunnel in either dual WAN mode.
Table 42. IP addressing for VPNs in dual WAN port systems
Configuration and WAN IP address Rollover mode
a
a. After a rollover, all tunnels need to be reestablished using the new WAN IP address.
Load balancing mode
VPN Road Warrior
(client to gateway)
Fixed FQDN required FQDN Allowed (optional)
Dynamic FQDN required FQDN required
VPN Gateway-to-Gateway
(gateway to gateway)
Fixed FQDN required FQDN Allowed (optional)
Dynamic FQDN required FQDN required
VPN Telecommuter
(client to gateway through a
NA
T router)
Fixed FQDN required FQDN Allowed (optional)
Dynamic FQDN required FQDN required