
ICMP "Ping" requests and allows NetDefendOS to assess the availability of the network pathways
to these IP addresses. The administrator can select one of a number of actions to occur should a
pathway appear to be broken for some reason.
Note: Link monitoring is not available on all NetDefend models
The link monitoring feature is not available on the DFL-260E and DFL-860E.
Link Monitor Actions
If sufficient replies are not received to link monitor polling, NetDefendOS makes the assumption
that the common link to those IP address is down and can then initiate one of 3 configurable
actions:
•
A NetDefendOS reconfigure.
•
A High Availability (HA) cluster failover.
•
An HA cluster failover followed by a NetDefendOS reconfigure.
Monitoring Multiple Hosts
A single
Link Monitor
object can monitor a single host or it can monitor multiple hosts. When
monitoring a single host, either a failure of the host or the connection to the host can cause the
monitor's action to be trigger.
When multiple hosts are specified for a single
Link Monitor
object, more than 50% of the hosts
have to be unreachable for the object's action to trigger. This is useful when it is the availability
of the connection to the hosts that is important and not the hosts themselves. If it is the
availability of a single host that is important then a
Link Monitor
object should be created that
monitors only that host.
The Link Monitor Reconfigure is Different
The reconfigure that can be triggered by the link monitor has one special aspect to it. The link
monitor reconfigure has the additional action of restarting all interfaces. This means that if there
is a problem related to a particular Ethernet NIC, perhaps due to overload, then this can be
cleared by interface initialization. This results in only a momentary delay in throughput while the
reconfigure takes place.
Link Monitor Uses
The Link Monitor is useful in two distinct scenarios:
•
An external device develops an occasional problem with its link to the NetDefend Firewall
and the physical link needs to be renegotiated. Such problems can occur sometimes with
some older equipment such as ADSL Modems. For this scenario action 1. Reconfigure
should be selected.
A reconfigure means that the NetDefendOS configuration will be reloaded. All connections
and states are saved but reloading means all traffic is suspended for a short period and all
interface links to external devices are renegotiated.
•
In an HA cluster setup, the link from the master to the external Internet (or other part of a
network) can be continually monitored so that should the link fail, the slave will take over
Chapter 2: Management and Maintenance
104
Summary of Contents for NetDefendOS
Page 30: ...Figure 1 3 Packet Flow Schematic Part III Chapter 1 NetDefendOS Overview 30 ...
Page 32: ...Chapter 1 NetDefendOS Overview 32 ...
Page 144: ...Chapter 2 Management and Maintenance 144 ...
Page 284: ...Chapter 3 Fundamentals 284 ...
Page 392: ...Chapter 4 Routing 392 ...
Page 419: ... Host 2001 DB8 1 MAC 00 90 12 13 14 15 5 Click OK Chapter 5 DHCP Services 419 ...
Page 420: ...Chapter 5 DHCP Services 420 ...
Page 573: ...Chapter 6 Security Mechanisms 573 ...
Page 607: ...Chapter 7 Address Translation 607 ...
Page 666: ...Chapter 8 User Authentication 666 ...
Page 775: ...Chapter 9 VPN 775 ...
Page 819: ...Chapter 10 Traffic Management 819 ...
Page 842: ...Chapter 11 High Availability 842 ...
Page 866: ...Default Enabled Chapter 13 Advanced Settings 866 ...
Page 879: ...Chapter 13 Advanced Settings 879 ...