how to route 2 wans with the same subnet
January 13, 2009 11:23 PM
Subscribe
Is there a firewall that will let me have two separate wan connections that are both on the same subnet/ have the same gateway?
I have a fortinet fortigate 60 that has two wan ports. We recently upgraded our wan connections to two fios lines, and would like to use them both. Only problem is that the fortigate does not allow us to have two connections that are on the same subnet.
line 1 = 192.168.1.34 with a gateway of 192.168.1.1
line 2 = 192.168.1.173 with a gateway of 192.168.1.1
( addresses changed to protect the innocent )
We are currently engaged in a 2 week epic battle with verizon to see if we can get one of the lines changed to a different subnet, but so far, they have managed to just change the ip address within the same subnet. three times. word.
I feel that I need to start planning for the possiblity that they may not be able to change the ip addess for us. So I figure we could look at other firewall solutions that might be able to do what we want.
1) is it possible to have two wan connections on one firewall that are in the same subnet? I know a bit about routing, but nowhere near enough to know how this would be possible.
2) If it is possible, any suggestions on firewalls that would work? ( I think I am more interested in linux based opensource firewalls, rather than dedicated firewalls, but if thats all you got, let me know anyways ).
posted by brent_h to computers & internet (6 comments total)
1 user marked this as a favorite
The Fortigate higher-end models support 802.3ad, a standard "link aggregation" protocol. However, it doesn't look like that support is available in the Fortigate 60 (I'm looking at this manual). However, look on page 117 of that manual and see if the configuration setting is available on your box.
I can't help you on which firewalls support it, but looking for 802.3ad, or possibly LACP, in the feature set would help. However, nothing will help unless Verizon can also set it up on their side, which may not be available with the FIOS service.
posted by five toed sloth at 12:01 AM on January 14