Chapter 5:
Firewall, Failover and Out of Band
108
Console Server & RIM Gateway User Manual
For inbound OoB connection with such a plan you will need to use Call Home with a VCMS/CMS6110 or set up a
VPN
In out of band access mode the internal cellular modem will continually stay connected. The alternative is to set up
Failover mode on the
console server
as detailed in the next section.
5.7.2
Cellular failover setup
Once you have configured carrier connection, the cellular modem can be configured for failover.
This will tell the cellular connection to remain idle in a low power state. If the primary and secondary probe addresses are
not available it will bring up the cellular connection and connect back to the cellular carrier.
Navigate back to the
Network Interface
on the
System:IP
menu specify
Internal Cellular modem (cell modem
01
) as the
Failover Interface
to be used when a fault has been detected
Specify the
Probe Addresses
of two sites (the
Primary
and
Secondary
) that the
console server
is to
ping
to
determine if the principal network is still operational
In event of a failure of the principal network the 3G network connection is activated as the access path to the
console server (and its Managed Devices). Only HTTPS and SSH access is enabled on the failover connection
(which should enable the administrator to connect and fix the problem)
Note:
By default, the advanced
console server
supports automatic failure-recovery back to the original state prior to
failover (V3.1.0 firmware and later). The advanced
console server
continually pings probe addresses whilst in
original and failover states. The original state will automatically be set as a priority and reestablished following
three successful pings of the probe addresses during failover. The failover state will be removed once the original
state has been re-established.
For earlier firmware that does not support automatic failure-recovery, to restore networking to a recovered state
the following command then needs to be run:
rm -f /var/run/*-failed-over && config -r ipconfig
If required, you can run a custom bash script when the device fails over. It is possible to use this script to
implement automatic failure recovery, depending on your network setup. The script to create is:
/etc/config/scripts/interface-failover-alert
You can check the connection status by selecting the
Cellular
panel on the
Status: Statistics
menu
Summary of Contents for ACM5000
Page 3: ......
Page 10: ...Table of Contents 10 Console Server RIM Gateway User Manual...
Page 11: ......
Page 94: ...Chapter 5 Firewall Failover and Out of Band 94 Console Server RIM Gateway User Manual...
Page 119: ......
Page 149: ......
Page 191: ......
Page 205: ......
Page 225: ......
Page 303: ......
Page 313: ......
Page 323: ......