Results 1 to 7 of 7
  1. #1
    Newbie
    Join Date
    Feb 2012
    Posts
    2

    Default Bandwidth control with two internet connections

    Hello all,

    Can someone help me figure out if Untangle can handle our environment. We are trying to configure bandwidth control to work with two internet connections that are not load balanced. This is our config.

    Internet A 20mbs---\

    Firewall ---- Untangle ---- Switch

    Internet B 20mbs ---/

    We have multiple sub nets and we configured out firewall to send each sub net out a specific internet connection. For example, all student and wireless traffic is routed out Internet A and all staff and servers are routed out Internet B.

    We want to set up Bandwidth control to treat each group of sub nets as a unique 20mbs pipe and throttle connections appropriately. Is this possible? Please let me know if you need further clarification.

  2. #2
    Master Untangler jcoehoorn's Avatar
    Join Date
    Mar 2010
    Location
    York, NE
    Posts
    606

    Default

    If you have bandwidth control, pay for the WAN balancer app also and throw away your old firewall. Untangle will take care of all of this for you in one device, and do it better job because it can be smarter about balancing the two connections and how that will interact with your packet shaping.
    Four time Microsoft ASP.Net MVP managing an IBM System x3250 / X3440 / 8GB with Untangle 9.4 to protect 40Mbits for 450+ residential college students and associated staff and faculty

  3. #3
    Newbie
    Join Date
    Feb 2012
    Posts
    2

    Default

    Thanks for the reply. I like that option because I'd really like to load balance both lines. However, our current firewall configuration is two Cisco ASA 5508s in active / standby and I don't think giving up redundancy will go well with my boss.

  4. #4
    Master Untangler jcoehoorn's Avatar
    Join Date
    Mar 2010
    Location
    York, NE
    Posts
    606

    Default

    Untangle is already a single point of failure in your diagram. Removing the cisco firewalls will make your network more resilient, not less, because all you're doing is removing the chance that both of the firewalls fail at the same time, or that the failover mechanism doesn't work as expected if the primary fails (this happens more than one would think).

    But for what it's worth, this is a common complaint and so I would be surprised if the UT team doesn't have a hot standby mode feature in the works.
    Last edited by jcoehoorn; 03-08-2012 at 09:11 AM.
    Four time Microsoft ASP.Net MVP managing an IBM System x3250 / X3440 / 8GB with Untangle 9.4 to protect 40Mbits for 450+ residential college students and associated staff and faculty

  5. #5
    Untangle Ninja sky-knight's Avatar
    Join Date
    Apr 2008
    Location
    Phoenix, AZ
    Posts
    16,890

    Default

    If I could figure out how to change Untangle's LAN IP address, the hot standby feature would be alive already.

    I'm not syncing configurations, nor doing any licensing magic. It's just a separate box, with a separate configuration hanging out waiting for the primary to blow up so it can take over. I've got everything working, I just can't change that ()&**^ IP address from the command line.
    Rob Sandling, BS:SWE, MCP
    Intouch Technology
    Phone: 480-272-9889
    rob@intouchtechllc.com

    UntangleAppliances.com
    Phone: 866-794-8879

  6. #6
    Master Untangler
    Join Date
    Apr 2007
    Posts
    613

    Default

    Quote Originally Posted by sky-knight View Post
    If I could figure out how to change Untangle's LAN IP address, the hot standby feature would be alive already.

    I'm not syncing configurations, nor doing any licensing magic. It's just a separate box, with a separate configuration hanging out waiting for the primary to blow up so it can take over. I've got everything working, I just can't change that ()&**^ IP address from the command line.
    Have you tried changing it in /etc/network/interfaces

    then do a /etc/init.d/networking restart?

    It doesn't update the untangle interface, but it appears to change it.

  7. #7
    Untangle Ninja sky-knight's Avatar
    Join Date
    Apr 2008
    Location
    Phoenix, AZ
    Posts
    16,890

    Default

    Restarting networking does bad things to Untangle, moreover raw configuration of that file leads to some other nasty bugs.

    So no I haven't tried it, because four years of working with Untangle has taught me to leave that thing alone!
    Rob Sandling, BS:SWE, MCP
    Intouch Technology
    Phone: 480-272-9889
    rob@intouchtechllc.com

    UntangleAppliances.com
    Phone: 866-794-8879

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2