How to configure Seqrite UTM to connect RF connector configured in bridge mode.

15-01-2022 18:15:01

Overview: The article will explain how you can connect RF connector on UTM when RF connector is in bridge mode.

When RF connector is configured in bridge mode in that case both the branches should be in same local LAN network. To elaborate further please understand the diagram defined below.

Applicable Versions: UTMv2.0 and above

RF connector configuration without UTM:

In the above diagram customer has two offices Head Office & Branch Office. Customer has ISP configured in Head Office and in Branch Office. The RF connector is configured in bridge mode. With these type of configuration customer can fulfill the requirement wherein if the internet of Branch office goes down they will be able to use internet of the Head Office. In this type of scenario both the offices will have to be in same Local LAN network which as per the diagram is

Now if customer has purchased Seqrite UTM and he wants to meet the same requirement on which both the Offices should be able to communicate with each other and also if Branch Office internet goes down it should be able to access internet of the Head Office. Diagram as defined below.

RF connector configuration with Seqrite UTM:

In the above diagram Customer has two offices Head Office and Branch Office. Both have Seqrite UTM. Both the offices are connected with each other over IPSEC VPN with different local network

Requirement 1: In case if internet goes down at Branch Office side they should be able to access Head Office network via RF connector (As of now both the offices are connected with each other using IPSEC VPN)

Requirement 2: If Branch office internet goes down they should be able to access the internet via Head office.

Note: RF connector in bridge mode will require same network at both the branches. Here in this example Head office network is so will require a free IP from this network which you will have to configure on Branch Office UTM on a port available which here in this example its ETH1 in branch office UTM.

Step 1: Configure a free IP taken from Head office network on branch office UTM. Connect the cable from that UTM port to switch. Here we have taken ETH1.

Now inform customer to connect the RF connector into branch office switch and give a free IP from Head Office network here in example we have given IP

Step 2: Tell the customer to free a range of IP address from the head office network and create a DHCP in branch office UTM with that pool of IP. This IP’s should not be used by any device at Head office.

Step 3: Add the Pool of IP address in users group under branch office UTM.

Manual Intervention required by customer at branch office UTM:

Customer will have to keep the ETH1 port in disable state at branch office end if he wants to continue using IPSEC VPN as the main connectivity. Once the IPSEC goes down due to internet issue at branch office he will have to enable the ETH1 port manually at branch office and disable the IPSEC VPN .

