Network Topology & Firewalla Product Selection

Comments

7 comments

  • Avatar
    Firewalla

    No issue. Your deployment is pretty standard.

    0
    Comment actions Permalink
  • Avatar
    David Rothenberger

    If your switch supports it, you can set up a LAG between the Firewalla and the port using Firewalla ports 1-3 and trunk all the VLANs over it. That might give you more performance, and will give you some redundancy in case one of the switch ports, Firewalla ports, or network cable fails.

    1
    Comment actions Permalink
  • Avatar
    ED

    Hi David - Thanks for chiming in as I hadn't considered this before.  

    Forgive my ignorance, but if I aggregate 3 ethernet ports and assign the LAG to Firewalla's WAN Connection wouldn't I also need 3 ports on the modem too?  

    I also thought Firewalla doesn't allow VLANs on WAN LAGs?  If true, I wouldn't do this as I want FWG to manage all the rules/routing.

    0
    Comment actions Permalink
  • Avatar
    Dave

    @ED

    David R. is talking about adding two additional ports off the TP-Link switch and attaching them to the Firewalla Ports 1 & 2. Then configuring them as a 3-port LAG for more bandwidth when routing between VLAN's (i.e. admin to trusted). This has nothing to do with the WAN (Port 4) which goes to your service provider.

    0
    Comment actions Permalink
  • Avatar
    Dave

    @ED 

     

    Correction Firewalla Ports 2 & 3

    0
    Comment actions Permalink
  • Avatar
    David Rothenberger

    Yes, that's right. I was talking about using a LAG for the LANs, not the WAN.

    At my house, I have two WANs, and I LAG the other two ports on the Firewalla to my TP-Link switch as a VLAN trunk for all my VLANs. Before I added the second WAN, I had a three port LAG for my LANs.

    0
    Comment actions Permalink
  • Avatar
    ED

    Guys - Thank you so much.  Makes sense so I'll give this a go.  

    0
    Comment actions Permalink

Please sign in to leave a comment.