[87447] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: NAT Configuration for Dual WAN Router

daemon@ATHENA.MIT.EDU (My Name)
Sun Dec 18 09:18:23 2005

Date: Sun, 18 Dec 2005 09:17:55 -0500
From: My Name <routerg@gmail.com>
To: Joe Johnson <nanog@sendjoeanemail.com>
Cc: nanog@merit.edu
In-Reply-To: <004e01c60119$069e0fb0$0a26a8c0@windows.jmdn>
Errors-To: owner-nanog@merit.edu


------=_Part_26417_9790457.1134915475724
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
Content-Disposition: inline

Assuming your providers give you a new modem which is already NAT'ing the
LAN side of the modem and you are plugging that into multiple NIC's on your
linux router like;

-modem-pub -> modem-priv -> linux-eth0
-modem-pub -> modem-priv -> linux-eth1
-linux-eth3 -> LAN switch

1) Configure VRRP (http://sourceforge.net/projects/vrrpd/) on eth0 and eth1
WAN side on the linux router.  You should be able to configure the weightin=
g
on each interface equally so that they 'load share' (I've done this in
FreeBSD).

2) Set the default gateway on the linux router to the VRRP interface (IP
that is shared between eth0 and eth1).

This would be a very scalable and reliable solution for this type of
network.  I've never tried it, but let me know if it works!

On 12/14/05, Joe Johnson <nanog@sendjoeanemail.com> wrote:
>
>
> I've been trying over and over to figure this one out, but I'm just
> hitting
> the end of my wits.  We have a remote office that can only get 768Kbps
> DSL,
> which they've not totally maxed out.  So management's solution now is to
> buy
> a second DSL line, but they won't let me buy a dual WAN router (in case
> they
> add a 3rd DSL line).
>
> I've found some great articles on how to get the interfaces working with =
2
> default gateways (I used this:
>
> http://www.linuxquestions.org/linux/answers/Networking/Spanning_Multiple_=
DSL
> s) and that is all running fine.  It alternates every few minutes which
> WAN
> port is used when I traceroute yahoo.com (which is fine) and everything i=
s
> connecting fine from the router.  However, I can't figure out how to get
> NAT
> running on the server for the 2 WAN ports for clients inside the LAN.  I
> can
> NAT to 1 DSL, but that is useless.
>
> What I am looking for is a tutorial in how to do this or a pointer to
> someone who can help.  Anyone know of a resource for this?
>
>
>
> Joe Johnson
> joe@sendjoeanemail.com
>
>
>

------=_Part_26417_9790457.1134915475724
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
Content-Disposition: inline

<br>

<br>

Assuming your providers give you a new modem which is already NAT'ing
the LAN side of the modem and you are plugging that into multiple NIC's
on your linux router like;<br>

<br>

-modem-pub -&gt; modem-priv -&gt; linux-eth0<br>

-modem-pub -&gt; modem-priv -&gt; linux-eth1<br>

-linux-eth3 -&gt; LAN switch<br>

<br>

1) Configure VRRP (<a href=3D"http://sourceforge.net/projects/vrrpd/">http:=
//sourceforge.net/projects/vrrpd/</a>) on eth0 and
eth1 WAN side on the linux router.&nbsp; You should be able to configure th=
e
weighting on each interface equally so that they 'load share' (I've
done this in FreeBSD).<br>

<br>

2) Set the default gateway on the linux router to the VRRP interface (IP th=
at is shared between eth0 and eth1).<br>

<br>
This would be a very scalable and reliable solution for this type of
network.&nbsp; I've never tried it, but let me know if it works!<br><br><di=
v><span class=3D"gmail_quote">On 12/14/05, <b class=3D"gmail_sendername">Jo=
e Johnson</b> &lt;<a href=3D"mailto:nanog@sendjoeanemail.com">nanog@sendjoe=
anemail.com
</a>&gt; wrote:</span><blockquote class=3D"gmail_quote" style=3D"border-lef=
t: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1=
ex;"><br>I've been trying over and over to figure this one out, but I'm jus=
t hitting
<br>the end of my wits.&nbsp;&nbsp;We have a remote office that can only ge=
t 768Kbps DSL,<br>which they've not totally maxed out.&nbsp;&nbsp;So manage=
ment's solution now is to buy<br>a second DSL line, but they won't let me b=
uy a dual WAN router (in case they
<br>add a 3rd DSL line).<br><br>I've found some great articles on how to ge=
t the interfaces working with 2<br>default gateways (I used this:<br><a hre=
f=3D"http://www.linuxquestions.org/linux/answers/Networking/Spanning_Multip=
le_DSL">
http://www.linuxquestions.org/linux/answers/Networking/Spanning_Multiple_DS=
L</a><br>s) and that is all running fine.&nbsp;&nbsp;It alternates every fe=
w minutes which WAN<br>port is used when I traceroute <a href=3D"http://yah=
oo.com">
yahoo.com</a> (which is fine) and everything is<br>connecting fine from the=
 router.&nbsp;&nbsp;However, I can't figure out how to get NAT<br>running o=
n the server for the 2 WAN ports for clients inside the LAN.&nbsp;&nbsp;I c=
an<br>NAT to 1 DSL, but that is useless.
<br><br>What I am looking for is a tutorial in how to do this or a pointer =
to<br>someone who can help.&nbsp;&nbsp;Anyone know of a resource for this?<=
br><br><br><br>Joe Johnson<br><a href=3D"mailto:joe@sendjoeanemail.com">joe=
@sendjoeanemail.com
</a><br><br><br></blockquote></div><br>

------=_Part_26417_9790457.1134915475724--

home help back first fref pref prev next nref lref last post