WAN General

Use this screen to configure load balancing, route priority, and connection test properties.

Note: WAN 2 refers to either the physical WAN 2 port on a ZyWALL with multiple WAN ports or the 3G card on a single WAN ZyWALL in router mode.

Label
Description
Active/Passive (Fail Over) Mode
Select the Active/Passive (fail over) operation mode to have the ZyWALL use the second highest priority WAN interface as a back up. This means that the ZyWALL will normally use the highest priority (primary) WAN interface (depending on the priorities you configure in the Route Priority fields). The ZyWALL will switch to the secondary (second highest priority) WAN interface when the primary WAN interface's connection fails.
Fall Back to Primary WAN When Possible
This field determines the action the ZyWALL takes after the primary WAN interface fails and the ZyWALL starts using the secondary WAN interface.
Select this check box to have the ZyWALL change back to using the primary WAN interface when the ZyWALL can connect through the primary WAN interface again.
Clear this check box to have the ZyWALL continue using the secondary WAN interface, even after the ZyWALL can connect through the primary WAN interface again. The ZyWALL continues to use the secondary WAN interface until it's connection fails (at which time it will change back to using the primary WAN interface if its connection is up.
Active/Active Mode
Select Active/Active Mode to have the ZyWALL use both of the WAN interfaces at the same time and allow you to enable load balancing.
Load Balancing Algorithm
Select Least Load First, Weighted Round Robin or Spillover to activate load balancing and set the related fields. Otherwise, select None.
 
WAN Interface to Local Host Mapping Timeout
Select this option to have the ZyWALL send all of a local computer's traffic through the same WAN interface for the period of time that you specify (1 to 600 seconds).
This is useful when a redirect server forwards a local user's request for a file and informs the file server that a particular WAN IP address is requesting the file. If the user's subsequent sessions came from a different WAN IP address, the file server would deny the request.
This field is configurable only when you select Active/Active Mode and enable load balancing.
Route Priority
 
WAN1
WAN2
Traffic Redirect
Dial Backup
The default WAN connection is "1' as your broadband connection via the WAN interface should always be your preferred method of accessing the WAN. The ZyWALL switches from WAN interface 1 to WAN interface 2 if WAN interface 1's connection fails and then back to WAN interface 1 when WAN interface 1's connection comes back up. The default priority of the routes is WAN 1, WAN 2, Traffic Redirect and then Dial Backup:
You have three choices for an auxiliary connection (WAN 2, Traffic Redirect and Dial Backup) in the event that your regular WAN connection goes down. If Dial Backup is preferred to Traffic Redirect, then type "14" in the Dial Backup Priority (metric) field (and leave the Traffic Redirect Priority (metric) at the default of "15").
The Dial Backup field is available only when you enable the corresponding dial backup feature in the Dial Backup screen.
Connectivity Check
 
Check Period
The ZyWALL tests a WAN connection by periodically sending a ping to either the default gateway or the address in the Ping this Address field.
Type a number of seconds (5 to 300) to set the time interval between checks. Allow more time if your destination IP address handles lots of traffic.
Check Timeout
Type the number of seconds (1 to 10) for your ZyWALL to wait for a response to the ping before considering the check to have failed. This setting must be less than the Check Period. Use a higher value in this field if your network is busy or congested.
Check Fail Tolerance
Type how many WAN connection checks can fail (1-10) before the connection is considered "down" (not connected). The ZyWALL still checks a "down" connection to detect if it reconnects.
Check WAN1/2 Connectivity
Select the check box to have the ZyWALL periodically test the respective WAN interface's connection.
Select Ping Default Gateway to have the ZyWALL ping the WAN interface's default gateway IP address.
Select Ping this Address and enter a domain name or IP address of a reliable nearby computer (for example, your ISP's DNS server address) to have the ZyWALL ping that address. For a domain name, use up to 63 alphanumeric characters (hyphens, periods and the underscore are also allowed) without spaces.
Check Traffic Redirection Connectivity
Select the check box to have the ZyWALL periodically test the traffic redirect connection.
Select Ping Default Gateway to have the ZyWALL ping the backup gateway's IP address.
Select Ping this Address and enter a domain name or IP address of a reliable nearby computer (for example, your ISP's DNS server address) to have the ZyWALL ping that address. For a domain name, use up to 63 alphanumeric characters (hyphens, periods and the underscore are also allowed) without spaces.
Windows Networking (NetBIOS over TCP/IP):
NetBIOS (Network Basic Input/Output System) are TCP or UDP packets that enable a computer to connect to and communicate with a LAN. For some dial-up services such as PPPoE or PPTP, NetBIOS packets cause unwanted calls.
Allow between WAN1 and LAN
Select this check box to forward NetBIOS packets from WAN 1 to the LAN port and from the LAN port to WAN1. If your firewall is enabled with the default policy set to block WAN 1 to LAN traffic, you also need to enable the default WAN1 to LAN firewall rule that forwards NetBIOS traffic.
Clear this check box to block all NetBIOS packets going from WAN 1 to the LAN port and from LAN port to WAN1.
Allow between WAN1 and DMZ
Select this check box to forward NetBIOS packets from WAN 1 to the DMZ port and from the DMZ port to WAN1.
Clear this check box to block all NetBIOS packets going from WAN 1 to the DMZ port and from DMZ port to WAN1.
Allow between WAN1 and WLAN
Select this check box to forward NetBIOS packets from WAN 1 to the WLAN port and from the WLAN port to WAN 1.
Clear this check box to block all NetBIOS packets going from WAN 1to the WLAN port and from WLAN port to WAN1.
Allow between WAN2 and LAN
Select this check box to forward NetBIOS packets from WAN 2 to the LAN port and from the LAN port to WAN2. If your firewall is enabled with the default policy set to block WAN 2 to LAN traffic, you also need to enable the default WAN2 to LAN firewall rule that forwards NetBIOS traffic.
Clear this check box to block all NetBIOS packets going from WAN 2 to the LAN port and from LAN port to WAN2.
Allow between WAN2 and DMZ
Select this check box to forward NetBIOS packets from WAN 2 to the DMZ port and from the DMZ port to WAN2.
Clear this check box to block all NetBIOS packets going from WAN 2 to the DMZ port and from DMZ port to WAN2.
Allow between WAN1 and WLAN
Select this check box to forward NetBIOS packets from WAN 2 to the WLAN port and from the WLAN port to WAN 2.
Clear this check box to block all NetBIOS packets going from WAN 2 to the WLAN port and from WLAN port to WAN 2.
Allow Trigger Dial
Select this option to allow NetBIOS packets to initiate calls.
Apply
Click Apply to save your changes back to the ZyWALL.
Reset
Click Reset to begin configuring this screen afresh.

Select Active/Active Mode under Operation Mode to enable load balancing on the ZyWALL.

The WAN General screen varies depending on what you select in the Load Balancing Algorithm field.

Least Load First

To configure Least Load First, select Least Load First in the Load Balancing Algorithm field.

Label
Description
Active/Active Mode
Select Active/Active Mode and set the related fields to enable load balancing on the ZyWALL.
Load Balancing Algorithm
Set the load balancing method to Least Load First.
WAN Interface to Local Host Mapping Timeout
Select this option to have the ZyWALL send all of a local computer's traffic through the same WAN interface for the period of time that you specify (1 to 600 seconds).
This is useful when a redirect server forwards a local user's request for a file and informs the file server that a particular WAN IP address is requesting the file. If the user's subsequent sessions came from a different WAN IP address, the file server would deny the request.
Time Frame
You can set the ZyWALL to get the measured bandwidth using the average bandwidth in the specified time interval.
Enter the time interval between 10 and 600 seconds.
Load Balancing Index(es)
Specify the direction of the traffic utilization you want the ZyWALL to use in calculating the load balancing index.
Select Outbound Only, Inbound Only or Outbound + Inbound.
Interface
This field displays the name of the WAN interface (WAN 1 and WAN 2).
Available Inbound Bandwidth
This field is applicable when you select Outbound + Inbound or Inbound Only in the Load Balancing Index(es) field.
Specify the inbound (or downstream) bandwidth (in kilo bites per second) for the interface. This should be the actual downstream bandwidth that your ISP provides.
Available Outbound Bandwidth
This field is applicable when you select Outbound + Inbound or Outbound Only in the Load Balancing Index(es) field.
Specify the outbound (or upstream) bandwidth (in kilo bites per second) for the interface. This should be the actual upstream bandwidth that your ISP provides.

Weighted Round Robin

To load balance using the weighted round robin method, select Weighted Round Robin in the Load Balancing Algorithm field.

Label
Description
Active/Active Mode
Select Active/Active Mode and set the related fields to enable load balancing on the ZyWALL.
Load Balancing Algorithm
Set the load balancing method to Weighted Round Robin.
WAN Interface to Local Host Mapping Timeout
Select this option to have the ZyWALL send all of a local computer's traffic through the same WAN interface for the period of time that you specify (1 to 600 seconds).
This is useful when a redirect server forwards a local user's request for a file and informs the file server that a particular WAN IP address is requesting the file. If the user's subsequent sessions came from a different WAN IP address, the file server would deny the request.
Interface
This field displays the name of the WAN interface (WAN 1 and WAN 2).
Ratio
Specify the weight for the interface. Enter 0 to set the ZyWALL not to send traffic load to the interface. The higher the number, the bigger the weight (the more traffic sent).

Spillover

To load balance using the spillover method, select Spillover in the Load Balancing Algorithm field.

Configure the Route Priority metrics in the WAN General screen to determine the primary and secondary WANs. By default, WAN 1 is the primary WAN and WAN 2 is the secondary WAN.

Label
Description
Active/Active Mode
Select Active/Active Mode and set the related fields to enable load balancing on the ZyWALL.
Load Balancing Algorithm
Set the load balancing method to Spillover.
WAN Interface to Local Host Mapping Timeout
Select this option to have the ZyWALL send all of a local computer's traffic through the same WAN interface for the period of time that you specify (1 to 600 seconds).
This is useful when a redirect server forwards a local user's request for a file and informs the file server that a particular WAN IP address is requesting the file. If the user's subsequent sessions came from a different WAN IP address, the file server would deny the request.
Time Frame
You can set the ZyWALL to get the measured bandwidth using the average bandwidth in the specified time interval.
Enter the time interval between 10 and 600 seconds.
Send traffic to secondary WAN when primary WAN bandwidth exceeds
Specify the maximum allowable bandwidth on the primary WAN. Once this maximum bandwidth is reached, the ZyWALL sends the new session traffic that exceeds this limit to the secondary WAN. The ZyWALL continues to send traffic of existing sessions to the primary WAN.