Basic Backup Example

https//www.racom.eu/eng/products/m/midge/app/wanbac/Basic_Backup_Example.html

Print version

1. Basic Backup Example

Basic Backup Example

Fig. 1.1: Basic Backup Example

1.1. M!DGE Configuration

Central M!DGE HOME menu

Fig. 1.2: Central M!DGE HOME menu

M!DGE is connected via the WAN network using its LAN2 interface. The WWAN1 link (cellular network) is down and the IPsec VPN connection is already established. To achieve this, several steps must be performed.

1.1.1. Ethernet Ports

In the example, the first port (LAN1) is used for the local subnet 192.168.1.0/24 and the WAN port (LAN2) is configured with an IP address 192.168.131.239/24. See the following pictures for the details.

Central M!DGE LAN1 configuration

Fig. 1.3: Central M!DGE LAN1 configuration

Central M!DGE WAN configuration

Fig. 1.4: Central M!DGE WAN configuration

1.1.2. Cellular Network

For the backup link, you need to configure your SIM card and APN accordingly. The configuration is made in the INTERFACES – Mobile menu. Configure it to meet your APN configuration.

Mobile interface configuration

Fig. 1.5: Mobile interface configuration

Use manual for more details about the mobile interface configuration.

1.1.3. VPN Tunnel

Configure and enable the IPsec (or OpenVPN) tunnel to the remote peer. In the example, the local network is 192.168.1.0/24 and remote network is 192.168.20.0/24.

IPsec configuration

Fig. 1.6: IPsec configuration

Keep in mind that you need to configure Peer IP address to be reachable via both connections (WAN and WWAN) so it may establish IPsec connection.

See the VPN examples in VPN Configuration application note or the manual for more details.

1.1.4. WAN Link Management

In the Link Management menu, configure the LAN2 interface as the permanent and primary option. Set the WWAN interface as its backup. The Establishment mode can be either set to „on switchover“ (to be connected only when the permanent link is not active) or „permanent“ (to be connected all the time – it is used for the faster link switching).

WAN Link Management

Fig. 1.7: WAN Link Management

Another step is configuring the Supervision feature.

Supervision

Fig. 1.8: Supervision

The Supervision enables M!DGE to control the link switching procedure. In our example, M!DGE checks the connection by executing the ping packets to the host on the IP address 10.203.0.1. If five consecutive ping packets are unsuccessful, the link is considered down and is switched. If there is no connectivity for 30 minutes, the unit is rebooted as a result of the Emergency action.

Both links are checked when they are up (Link – ANY), otherwise you could choose just one link to be checked or create two different Supervision for each link (e.g. lower timeouts and more frequent checks on the WAN link).

1.2. Practical Test

Now you should be connected via the primary WAN link (LAN2). The easiest way to test the switching is to unplug the ETH cable from the LAN2 interface. M!DGE almost immediately recognizes the unplugged cable and it switches to the cellular network. The VPN tunnel should also be reestablished.

WWAN link is UP

Fig. 1.9: WWAN link is UP

[Note]Note

You can test the connectivity by issuing a ping to any desired IP address (e.g. behind the VPN tunnel) in the SYSTEM – Troubleshooting – Network debugging menu.

Plug the cable back into the LAN2 interface and wait a moment for the M!DGE to reestablish the primary connection again.

You can also check the correct functioning of the Supervision feature.

Fill in both host IP addresses in the Supervision menu. One needs to be reachable only via the cellular network and the other one only via the WAN network. Turn off the server with an IP address reachable via the WAN network. The active connection should be changed to the cellular network. Turn on the server again and see the link switch back to the primary one.

©  2024 RACOM s.r.o. All Rights Reserved.