Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - ahenning

Pages: 1 ... 32 33 [34] 35 36 ... 42
496
Features / Re: Policies rules modifcation
« on: October 14, 2014, 11:31:30 AM »
Hi Anil,

I agree, the policies can be made more user friendly. I'll keep the request to 'modify an existing rule' in mind when making changes to this table.

Thanks

497
Troubleshooting / Re: How to bypass the policies which is already added
« on: October 13, 2014, 08:32:33 PM »
Yes, that's correct, remove then add. If you are looking for a feature not available, please use the feature request thread.

498
Troubleshooting / Re: Lan0 & wan0 speed
« on: October 07, 2014, 01:10:10 PM »
Thanks Anil, great to hear that and appreciate the feedback.

499
Troubleshooting / Re: passthru traffic problem
« on: October 02, 2014, 02:29:01 PM »
Hi Peter,

Thanks for all the details, this helps a lot.

"I cannot connect to web interface on 10.0.0.97"
I think this is since http is optimized from .123 to .97 but does not flow all the way through .97. Https should always work or a bypass rule on .123 can be added to bypass all .97. It is also probably affected by the second problem.

"I cannot connect to any https in internet."
Since only bypass traffic seems to be affected, which means traffic is simply passed unchanged between lan0 <-> wan0, I think the problem is due to MTU or Fragmentation on the L2TP tunnel.
Optimized traffic seems to be ok since optimization is already making provision for extra protocol overhead and possibly avoiding the MTU/Fragmentation problem.

MSS clamping / MSS Adjust should be possible on the mikrotik, but if not, we can configure Wanos to apply the MSS Adjust to the bypass traffic.


500
General Discussion / Very high latency link
« on: September 27, 2014, 06:22:53 PM »
Satellite links normally have latency in the +-500ms range, but in this test the latency is double at 1000ms. WAN link size is 1 Mbps.

http://www.youtube.com/watch?v=kaJQBTTjJE0

501
Installation / Re: Firewalls
« on: September 26, 2014, 09:34:21 AM »
UDP Encap is useful when the users are not in control of the firewalls, e.g. a managed service.

E.g.
Firewall or Sat modem that strip TCP Options e.g Option 76, Window scaling and Selective ACKs.
Firewall that can't NAT/PAT proto 108.

UDPEncap gives them a last resort option when they can't implement the recommended/required firewall changes.

502
Installation / Re: Firewalls
« on: September 25, 2014, 10:02:43 PM »
As a last resort the UDP Encap can be enabled by setting the UDP encapsulation in the gui.
Notes:
All sites requires the option setting.
Additional overhead and processing is introduced.

503
Deployment / Re: WAN OS Built in VPN
« on: September 25, 2014, 09:52:00 PM »
The UDP Encap is enabled by setting the Encapsulation to UDP under optimization settings. Both sides needs to match.

If anyone is interested the ability can be extended to also build tunnels between Wanos appliances.

504
General Discussion / Re: Express Vs. Plus
« on: September 24, 2014, 03:56:36 PM »
Hi,

Plus includes comprehensive support (tech support, major updates, minor updates) and supports more remote sites.
Express only has forum support and a limited number of remote sites.

These may change from time to time, so please double check the Products page



505
Troubleshooting / Re: wanos throughput on kvm
« on: September 23, 2014, 10:56:30 AM »
Thanks for the info Peter,

10-12 MB throughput on 100 Mbps infrastructure is about line rate. I think the kvm platform is something to consider and hopefully down the line make it an officially supported platform.

Thanks for taking the time to submit this info.

506
Features / Re: Feature Requests
« on: September 23, 2014, 10:17:42 AM »
Thanks spoonzw, added to the list.

507
Hi,

Ok, if I understand correctly the workstations on the one office link communicate with the other workstations/servers using the dynamic IP supplied by the ISP. Once the dynamic IP addresses are known a traffic rule can theoretically be added, but the IP address will change.

The best solution, in my opinion, is to setup a VPN between the two routers based on dynamic DNS. This will enable the devices to communicate on the private ip address space and will also avoid any NAT issues as well.

508
Troubleshooting / Debug : Corrupt Datastore
« on: September 17, 2014, 02:19:28 PM »
Removed due to outdated info.

509
General Discussion / Re: Version 1.3.3
« on: September 14, 2014, 09:24:42 AM »
UDP Optimization means Deduplication, Compression, Quality of Service, Packet Loss Recovery and Packet order correction.

For production it is recommended to very carefully plan and configure UDP Optimization e.g. use the traffic rules to enable a specific application.

510
General Discussion / Version 1.4.1
« on: September 13, 2014, 08:05:37 PM »
Please test thoroughly before deploying in production.
Update process: http://wanos.org/forum/index.php?topic=95

Version: 1.4.1
Minor Updates:
10-20% Throughput improvement @ 0% reduction loss.
Fixed a bug where reloading a full datastore on one side would lead to sub-optimal optimization due to syncing.
Fixed a bug introduced in 1.3.4 that caused Netflow data to not expire correctly.
Alpha Netmap support.

Version: 1.4.0
Major Update:
If 1.3.4 is running in a stable environment, it is not required to upgrade yet.
Upgrade if the current deployment is in the trial/test phase.
Changes:
Significant changes to improve multi-threading.
Shellshocker security updates, although Wanos is not vulnerable from unauthenticated sessions.

Version: 1.3.4
Minor Update:
Changed the default multithreading config.
Top Protocols sorting added.
Fixed the 64GB partition sizes in the .OVA and .VHD packages.

Version: 1.3.3:
Minor update:
QoS traffic graphs
Per Peer LAN/WAN traffic graphs
Initial process priorities

Version: 1.3.2:
Minor update:
Fixed a case where fragments caused NetFlow to crash.

Version: 1.3.1:
Is a maintenance release:
Patched a bug that dropped UDP traffic.
Added default Encrypted and Interactive bypass policies.
Enabled UDPEncap peering sample rates to be adjustable or disabled.

Version: 1.3.0:
Is a major update.

Changes:
More safety nets implemented for UDP and TCP fragments.
Fix implemented where click process froze randomly when CPU threads were >= 6. Only affected high spec devices with 8-12 cores.
Traffic policies changed to require a protocol in order to avoid accidental UDP optimization.
UDP Optimization improved.
Traffic Session Flow statistics e.g. src_ip dst_ip 90% reduction.
Top protocol/application statistics e.g. www, pop3
Live graph added to help monitoring. live ratio and live bytes saved (From LAN to WAN and vice versa)
Per Peer/Site optimization graphs e.g. possible to see stats for Site_A, Site_B and Site_C
Ratio Graphs added e.g. Ratio 2X for the last Hour, Day etc.
Ability to export graphs added.
Peering Status to see which sites are online.
Bypassed/Passthrough traffic excluded from optimization graphs.
Netflow export to external collector.
UDP Encapsulation of optimized traffic.
Core/Edge renamed to High/Low to reduce confusion. Docs will be updated as well.
wanos-show utility added.


What's next?

Pages: 1 ... 32 33 [34] 35 36 ... 42