GFI Software

Welcome to the GFI Software community forum! For support please open a ticket from https://support.gfi.com.

Home » GFI User Forums » Kerio Control » Managing multiple internet connections
Managing multiple internet connections [message #129416] Thu, 05 May 2016 17:24 Go to next message
greig is currently offline  greig
Messages: 3
Registered: May 2016
Hey guys,

Just want to ask a quick question, hopefully someone can help me.

I have kerio control ver 9.0.1 installed on the yacht I work on. We currently have two ways to connect to the internet via VSAT and through 4G.

We have a few VLANS set up, but the main ones are the crew network and the owners network. What I was hoping to do is put the owners through the 4G while we are close to land and the crew can share the VSAT. I enable the 4G network in network interfaces and set "multiple internet links - load balance" under internet connectivity. I know the load balance option isnt the right one, but its the only one that kind of works.

I then selected "Owners 4G" under the traffic rules page.

Now the problem is, is that some of the devices connected to the owners network go through the 4G perfectly fine, but some dont. At a guess, Im guessing they are trying to go through the VSAT still.

Can someone give me advice on what may be the issue here. Im guessing selecting "multiple internet links - load balancing" is probably not the right option when running two internet connections going to separate VLANS. But I dont think the other two options "single internet link" or "multiple internet links - fail over" are the right ones either.

Is kerio capable of having two VLANS going through two different internet connections? Or can you only use two separate internet connections for load balancing over all VLANS or fail over for all VLANS?

Any help would be appreciated.

Regards,

Greig

[Updated on: Thu, 05 May 2016 20:37]

Report message to a moderator

Re: Managing multiple internet connections [message #129419 is a reply to message #129416] Fri, 06 May 2016 03:58 Go to previous messageGo to next message
dmeadows
Messages: 7
Registered: May 2016
Hi Greig,

Interesting setup you've got there.

What you could do is create a traffic rule with the source being the IP group of the Owner's VLAN and NAT to the 4G interface specifically (rather than internet interfaces in general); and of course the equivalent for the VSAT and crew.

You can even use time ranges to coordinate when these rules are active if there are specific times when you're close to land.

All the best,

Derek.

Re: Managing multiple internet connections [message #129427 is a reply to message #129416] Fri, 06 May 2016 11:48 Go to previous messageGo to next message
greig is currently offline  greig
Messages: 3
Registered: May 2016
Hi Derek,

Cheers for the response.

I have attached a screen shot of our traffice rules. I pretty sure they are as you described.

The owners IP's are the source and the destination is the 4G interface. I haven't got it selected at the moment. But usually I would un-tick VSAT and then select owners 4G.

I get a feeling that there should be more options in internet connectivity other then the default ones which are:
- Single internet connection
- Multiple internet links - fail over
- Multiple internet links - load balancing

Maybe an option that is just multiple internet connections. With out fail over and load balancing.
  • Attachment: 4g3.JPG
    (Size: 129.62KB, Downloaded 1203 times)

[Updated on: Fri, 06 May 2016 16:13]

Report message to a moderator

Re: Managing multiple internet connections [message #129523 is a reply to message #129416] Wed, 11 May 2016 00:08 Go to previous messageGo to next message
boombasstic is currently offline  boombasstic
Messages: 6
Registered: October 2013
i used to have similar setup and it worked fine.
the only difference is that i would set the destination as internet interfaces. then select in NAT option the interface the users would go out on the internet with.

see attached file
  • Attachment: Capture.PNG
    (Size: 3.37KB, Downloaded 1186 times)
Re: Managing multiple internet connections [message #129641 is a reply to message #129416] Thu, 12 May 2016 19:07 Go to previous messageGo to next message
greig is currently offline  greig
Messages: 3
Registered: May 2016
Cheers for the reply.

What did you select for internet connectivity?

My options are:

- Single internet connection (brings up a warning if I have two internet interfaces selected)
- Multiple internet connections - fail over (Makes me pick a primary and a secondary)
- Multiple internet connections - load balancing (Makes me put weights in it)

Re: Managing multiple internet connections [message #129642 is a reply to message #129416] Thu, 12 May 2016 21:36 Go to previous messageGo to next message
boombasstic is currently offline  boombasstic
Messages: 6
Registered: October 2013
load balancing.
Re: Managing multiple internet connections [message #129682 is a reply to message #129642] Mon, 16 May 2016 04:53 Go to previous messageGo to next message
UnifiedTechs-Brian is currently offline  UnifiedTechs-Brian
Messages: 159
Registered: March 2011
Location: Vero Beach, FL
You may want to look into Knavel. I have not used it personally but I saw a demo on it a year or 2 ago and it looks like a great tool for those who use Kerio on Yacts.

http://www.knaval.com/


- Brian
Kerio Preferred Partner, Reseller & Hosting Provider
Unified Technology Solutions
Re: Managing multiple internet connections [message #129846 is a reply to message #129682] Thu, 19 May 2016 08:30 Go to previous messageGo to next message
Ceng is currently offline  Ceng
Messages: 3
Registered: May 2016
Greig,

I have same setup which is working correctly for me. Do you perhaps have a catchall rule that is sending traffic to Vsat that is not caught by your other rules? If you look at the connections "Status/Active Connections" you can see if your rules are correctly working.
Re: Managing multiple internet connections [message #130307 is a reply to message #129846] Sun, 12 June 2016 19:39 Go to previous messageGo to next message
Shaunie is currently offline  Shaunie
Messages: 23
Registered: June 2016
Location: Everywhere
I found this post after looking around for a way of doing this. Although I had managed to do it myself in the end.
I created a new IP Address group. Added the machines in this that I wanted to use my Cellweaver 4g to this group.
Created a new traffic rule and just used the wizard > On first option gave it a name (4g use) selected policy routing and then selected the 4g interface.
On the next page I added the group I created or you can add specific ip addresses or a combination.
Then enabled the 4g interface and set it to load balance. I never added a weight for the 4g.

I tested by tracing a route from a device going via 4g and a device from vsat and it worked a charm.
Re: Managing multiple internet connections [message #145977 is a reply to message #129416] Mon, 17 June 2019 12:01 Go to previous message
ETO-Dytan is currently offline  ETO-Dytan
Messages: 1
Registered: June 2019
I see this thread is a few years old. Instead of beginning a new thread, I thought I might as well add to this. I'm having a similar issue with regards to routing traffic. I have three internet interfaces, Vsat, 4G and a shore link. I am trying to route traffic from various VLAN's through either of the three gateways. I have assigned Weight 1 to the 4G connection, Weight 2 to the shore line and Weight 3 to the Vsat.

I have traffic rules for each VLAN and each corresponding interface, so for example owners VLAN I have a traffic rule for 4G (NATing to this specific interface) Vsat (NATing to that specific interface) and Shore Line (NATing to that specific interface) I have three traffic rules for each VLAN whose traffic I wish to route via differing interfaces. I also have corresponding Bandwidth Management and QoS for all of the above.

I have selected the traffic rule for the owners VLAN to route traffic via the 4G interface, all the other traffic rules for this VLAN are unchecked. I have enabled the corresponding bandwidth management rule. I have double checked all the rules to ensure they are configured correctly.

Device 10.10.30.127 is on the Owners VLAN, and when I search for this in active connections, I see that the traffic is being sent via the Shore Line, yet there is no rule to enabled for this. The device 10.10.30.127 cannot access the internet, as its trying to do so via the shore line, the traffic rule and QoS rule for this are disabled.

Anybody able to provide some insight as to what might be going on?



/index.php?t=getfile&id=4978&private=0
Previous Topic: How to change amount of quota alert
Next Topic: License quota exhausts soon alerts
Goto Forum:
  


Current Time: Wed Sep 27 22:55:41 CEST 2023

Total time taken to generate the page: 0.07421 seconds