Configuration for Dual-WAN Routers
Overview
The Accelerated 6300-CX Cellular Extender provides a reliable, high-speed cellular connection that is compatible with existing wireline infrastructure. While its 4G LTE speeds are capable of operating as a primary WAN uplink, the 6300-CX can also be configured as a backup. This network redundancy solution delivers the ultimate flexibility to minimize expenses when it comes time for upgrading equipment to the latest wireless standards.
Business continuity depends on the seamless integration of failover-connectivity solutions to prevent service interruptions. Now more than ever, contingency networks play a strategic role in sustaining business operations. Unplanned outages can cost companies significant time and money, frustrating employees and clients alike, which creates a negative perception that is difficult to overcome.
Cellular data (4G LTE) bypasses wireline Internet service providers (ISPs) to facilitate the best redundancy possible. Additionally, in some situations it may be a challenge to acquire access to wired circuits or an event may call for temporary online access. Accelerated Concepts extensively tests the 6300-CX Cellular Extender to ensure its interoperability with a wide variety of security appliances, including equipment produced by SonicWall, Edgewater, Meraki, Fortinet, and others to best accommodate enterprise networks. Pairing the Accelerated 6300-CX with a dedicated firewall offers comprehensive security and flexibility for small business, retail, government, remote sites, and branch offices.
Interoperability Matrix
This section covers interoperability information of the hardware tested for this solution. It includes the firmware versions of both devices as well as the date of testing.
Date | 6300-CX Firmware |
---|---|
12/2016 | 16.11.142 |
Caveats
The delivery of wireless services varies depending on the carrier and may lead to differences in the area of coverage, type of service (3G, 4G, LTE, etc.), available bandwidth, and IP address designation (Private or Public) among other factors. The interoperability test designed for this solution guide included LTE service, maximum coverage availability, and a public IP address assigned to each device.
Using the 6300-CX as a secondary uplink requires dual WAN ports on the appliance to which it provides connectivity. Therefore, the service described herein assumes the following:
- Two available WAN ports (primary and secondary interfaces)
- Administrative access to the dual-WAN device’s local GUI
Some networking appliances have interfaces that can be used as either WAN or LAN ports depending on how they’re currently configured. If this is the case, please consult the documentation included with the firewall or router for step-by-step guidance before referencing the configuration notes included in this document.
NOTE: If additional LAN ports are necessary for practical use, a switch can be introduced without requiring additional configuration. Connect the switch to an available LAN port and proceed with the processes described herein.
Accelerated 6300-CX Cellular Extender Setup
Initial Setup
Affix both antennas to the router and insert an activated SIM card before deploying the device. Be sure to select a location with optimal signal strength. For detailed instruction, refer to the tables that follow. Subsequent sections will outline site selection, powering options, and other device functionality.
|
Site Survey
If you are unsure of the available cellular signal strength, or are choosing between several locations, please follow the instructions to identify the ideal installation site.
|
Remote Power Installation – Power Option #1
The included Power-over-Ethernet (PoE) injector allows the device to be positioned away from power outlets to simplify its installation needs. The adaptor consolidates the DC power and Ethernet connections so that both can be run to the 6300-CX via a single Ethernet cable. Distances of 300 ft have been tested on CAT6 and 250 ft on CAT5e. Note that cable conditions and the number of splices will impact actual distance.
|
Direct Power Installation – Power Option #2
If you plan to collocate the 6300-CX with the MX device, you can directly power the 6300-CX without the PoE cable.
|
Understanding the 6300-CX LEDs
Once power has been established, your device will initialize and attempt to connect to the network. Device initialization may take 30-60 seconds. Indicator lights on the Wireless Strength Indicator show you the cellular network signal strength. The Network Status Light on the front left of the device displays connectivity information.
Please visit accelerated.com for additional information and troubleshooting tips.
Router Configuration with the Accelerated 6300-CX
Dual-WAN Configuration
Before designating the primary and secondary Internet connections, first identify the available ports on the dual-WAN appliance’s back panel. While most modern devices support multiple WAN interfaces, not all equipment contains a separate grouping specifically for WAN uplinks. Should this be the case, and there is no distinct labeling to differentiate between ports for Ethernet (LAN) and Internet (WAN), the best practice is best to start with the lowest available port (usually either 0 or 1 unless otherwise specified) for the primary uplink and to use its adjacent port for the secondary connection. Follow the same rule of thumb if the firewall features dedicated WAN interfaces, starting with the first port for the primary WAN before assigning the secondary line.
Network devices typically feature a local (or web) GUI to handle configuration settings. More often than not, this administration portal is accessed by navigating to the device’s IP address using a web browser. Administration portals may vary greatly, depending on the make and model of the appliance in question, though the overall process remains the same: enable (or confirm) multiple WAN support and establish failover prioritization. Additional settings will likely be available to offer further control over how the two interfaces cooperate, such as automatic failback/ reversion, load balancing, and traffic-shaping rules or exceptions. Please refer to the proprietary documentation included with the device for an in-depth walkthrough of its local GUI/ admin portal.
In most dual-WAN scenarios, the connection supplied by the 6300-CX is best leveraged as the backup WAN interface. Its embedded cellular modem allows network administrators to run an LTE backup via an Ethernet cable as opposed to a USB solution, which preserves the full security functionality of most firewalls. (DPI-SSL inspection, for example, is not guaranteed when failover connectivity is provided by a USB-connected modem.) It is important to note that IP Passthrough must be enabled on the 6300, which is the device’s default setting, to ensure that the dedicated firewall or router is able to properly control how Internet traffic is being routed. This configuration and other administrative settings can be handled remotely by logging into Accelerated View™, a centralized system for network administration that allows for web-based monitoring, management, reporting, and alerts on all Accelerated devices.
NOTE: When integrating cellular failover into existing infrastructure, it is critical to consider all factors in play. Business continuity solutions must be as reliable as they are cost-effective to mitigate the impact of network outages. Firewalls and similar appliances have many supplemental features that allow for advanced control over how data flows between the two WAN connections, but the nature of mobile data plans may not be conducive toward enabling all of these settings. Load balancing, for instance, would consume additional data so it is important to stay aware of any data caps or limitations (or at least assess the cost of exceeding them). Similarly, customizing the parameters for failback the process of switching back to the primary WAN once its connectivity is restored can optimize dual-WAN configurations by actively checking the status of both uplinks, minimizing the data usage and response time for failover while maximizing continuity. Please refer to your cellular or internet service provider for additional information about available data plans.
|