|
||||||||
Just a thought ... Vpn connections are not going to work if the failed over firewall has a different ip from the main firewall .... I seem to remember that sonicwall got around this ... maybe I'm wrong tho ... -----Original Message----- From: Barry Mather [mailto:barry dot mather at dorecentres dot com dot au] Sent: 22 April 2004 10:56 To: m0n0wall at lists dot m0n0 dot ch Subject: RE: [m0n0wall] m0n0 hacking questions I'd deffo be interested in this, I'm in the planning stages of setting up a WISP in Sydney, and this kind of thing would be VERY useful ! Good work I say ! -----Original Message----- From: Curt Shaffer [mailto:curt at chilitech dot net] Sent: 22 April 2004 06:40 To: m0n0wall at lists dot m0n0 dot ch Subject: [m0n0wall] m0n0 hacking questions I have started today to add a generic fail-over option for the m0n0wall. I plan to add a fail-over link in the menu and this link will contain an enable/disable option, a place for Secondary IP, subnet and Gateway and in later versions, types of alive state checking, time limits for checking and intervals to check after a state change. I am just writing a script that checks for an alive state via ping or TCP and returns a value. If it is ok everything stays the same, if it is down it changes the wan information and adds a static route to the primary destination, then reboots the box for the settings to take affect. It then checks at an interval to see if the primary destination is back up and if so then it changes the wan information back to the primary. I will probably add the link under the Services option on the menu which I think may be the most fitting. Just letting everyone know docs will be available as soon as I get a working version. I know its a generic way to do it but until something better comes around it will do. Let me know if you have any suggestions or requests! Curt Shaffer Wireless/Network Specialist Chilitech Internet Solutions www.chilitech.com 866-678-6858 This e-mail message may contain confidential or privileged information and is intended solely for the individual to whom it is addressed. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. If you have received it in error please notify us immediately by telephoning 1300 55 77 11 and destroy this e-mail and any attachments. E-mail transmission cannot be guaranteed to be secure or error-free as information could be intercepted, corrupted, lost, destroyed, arrive late or incomplete, or contain viruses. The sender therefore does not accept liability for any errors or omissions in the contents of this message, which arise as a result of e-mail transmission. The content of this email is not necessarily that of the Dore Acievement Centres unless otherwise specified. This email was scanned for possible viruses and was sent on 22/4/2004 by barry dot mather at dorecentres dot com dot au to m0n0wall at lists dot m0n0 dot ch --------------------------------------------------------------------- To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch |