ISP change - configure X1/X2
Asif_Iqbal
Newbie ✭
Hello All,
We have moved to a new ISP and now have all the WAN details to add to the SW NSa4700.
The incumbent ISP is using X2 at the moment with the usual WAN IP, GW, DNS etc.
My question is, can I simply update the entries in the X2 connection to the new ISP - WAN IP, GW, DNS or is there a process for this I need to follow?
Thanks as always,
Category: Mid Range Firewalls
0
Answers
You should only require to change the settings on the X2 interface. It should not affect anything else, since you are not changing the WAN interface to another physical port of the firewall.
Thanks Mustafa,
To confirm, we have a different ISP in X1. So we will be using X1 and X2 with LB and Failover.
We have a HA pair so I trust I will need to change the X2 interface WAN details on both devices?
Thanks,
Yes, that is correct.
Thanks Mustafa - I'll try this shortly and update on here.
Kind Regards,
That depends on if you want to keep both ISPs for a failover option, or if you intend on having just one ISP?
Just one ISP: yes, you can simply update the IP address on the interface to reflect the new connection. The routing rules, Firewall rules, and others should reflect the change when you save it.
Keep Both ISPs:(even if it’s temporary) Awesome! Keep the current interface untouched. Program another interface X1,x3,x? as a WAN interface. THEN! you will want to configure Load Balancing to automatically switch to your "backup" connection if the main link fails.
LB Link: https://www.sonicwall.com/support/knowledge-base/how-to-configure-failover-when-there-are-two-or-more-wan-interfaces/200611020940813/#:~:text=Resolution%20for%20SonicOS%207.X%201%201.%20Navigate%20to,LB%20group%20Select%20Basic%20Failover%20...%20More%20items
Aslo, If you have an HA, the change will replicate.
We do have 2x ISP's in the current LB and Failover section. This is set up as a Ratio see screenshot below.
@MustafaA - does your solution still work if I only change the X2 connection details in Interfaces. Noting else is changing.
Thanks All,
Yes, nothing else should be required.
Thanks Mustafa,
Kind Regards,
one more point to add: That LB list is a Top-down priority. If you place X2 above X1 (from the LB group management window) then X2 would be your primary Interface. This can be tested by going to whatismyip.com or check your default route 0.0.0.0.
So, if you are adding a new interface, make sure that the primary is on top and always remove unused WAN interfaces. (if you end up removing X1)
My understanding from the comments is that both WAN interfaces are configured as Load Balancing with the Ration option. You are referring to Basic Failover which the priority of the interfaces plays the role.
@MustafaA -correct we are using a Ratio with the LB option. @AZSNWL - X1 is at the the top of the LB list and I would not expect this to change. I am making the change and will update you guys after this.
Kind Regards,
@MustafaA @AZSNWL
@MustafaA @AZSNWL - I have made the required changes to X2 on the SonicWall and apart from a few DNS updates pointing the new IP's to existing services, this had gone smoothly.
Very many thanks for your help with this.
Kind Regards,
Glad to read that the transition was smooth, @Asif_Iqbal