Sunday, April 26, 2020

WatchGuard firewall — what are the benefits of Secondary IPs used in (External) Interface

I’m moving (replicating) the server/RDS from one site to another. Both sites have a WatchGuard firewall, but only one has secondary IPs added to one of the external interfaces (leased line).

All this was configured by someone before my time and I’m learning from back to front šŸ˜‹šŸ˜Ž

Different things such as BOVPNs use different IP and not the primary IP. I use the primary IP for the management.

At the new site, can I assign the primary IP to everything? (Not like I have a choice)

I guess I’m just not 100% sure about the benefits of having additional external IPs other than separating traffic.

Also, can I just move all those additional IPs from one watchguard to another? The first watchguard won’t need them anymore. Not sure how that works with the ISP provider either... both sites have a leased line provided by the same ISP.



No comments:

Post a Comment