Document toolboxDocument toolbox

Configuring Multi-Interface Networks

Note

From NIOS 9.0 onwards, IB-4030 and IB-4030-10GE appliances are not supported.
Similar features and functionalities are available on software-based DNS Cache Acceleration appliances, and it is recommended to use the software-based DCA supported appliances. For a list of supported appliances, see as described in Supported DNS Cache Acceleration Appliances.

The IB-4030 and IB-4030-10GE are high performance appliances capable of achieving over 1M qps performance. To configure LAN1, LAN2 and MGMT interfaces to the same IPv4 or IPv6 subnet, provide the same netmask for IPv4, or a CIDR prefix for IPv6, as the LAN1 interface. The appliance can replace three DNS cache servers that are active on the same network.

Note

If the LAN1 interface fails, the outgoing traffic will not be re-directed to any other interface and access to LAN2 and MGMT also fails.

Queries cached in an accelerator receive responses from the same port the query arrived on. These DNS queries are resolved at the acceleration layer of the IB-4030 or IB-4030-10GE without server interaction.
The following figure shows an IB-4030 or IB-4030-10GE appliance behind a load balancer and the usage of three interfaces, LAN1, LAN2 and MGMT, to support DNS requests. The three interfaces are configured on the same subnet using the /24 netmask.

Figure 2. Multiple Interfaces Configured on the Same Subnet on an IB-4030 or IB-4030-10GE Appliance

To configure multiple interfaces on the same subnet on an IB-4030 or IB-4030-10GE appliance:

  1. From the Grid tab, click the Grid Manager tab -> Members tab -> member check box, and then click Edit.
  2. In the Grid Member Properties Editor, click Toggle Advanced Mode.
  3. When the additional tabs appear, click the Basic subtab of the Network tab.
  4. Required Ports and Addresses: Enter information for the interfaces. Some fields are pre-populated by Grid Manager based on the existing configuration of the appliance. All fields are required. Click the empty fields and complete the following information:
    • Interface: Displays the name of the interface. You cannot modify this.
    • Address: Displays the IP address of the LAN1 port. You can apply an IPv4 and IPv6 address for the network settings. Ensure that you know the gateway IP address for either protocol type.
    • Subnet Mask (IPv4) or Prefix Length (IPv6): Displays the subnet mask for IPv4 address and the prefix length for IPv6 address of the LAN1 port.
    • Gateway: Displays the IP address of the gateway of the subnet on which the LAN1 port is set.
    • VLAN Tag: Displays the VLAN tag ID if the port is configured for VLANs. You can enter a number from 1 to 4095.
    • Port Settings: The default value is Automatic. Select the port settings from the drop-down list. The list contains all settings supported by the hardware model. The appliance automatically detects port settings.
    • DSCP Value: Displays the Grid DSCP value. To modify, click Override and enter the DSCP value. You can enter a value from 0 to 63.
  5. Enable Port Redundancy on LAN1/LAN2: Select this check box to allow port failover between LAN1 and LAN2. Based on the port configuration, one port remains inactive during operation, available for failover operation should the primary port stop working. For more information about port redundancy, see the NIOS Documentation at docs.infoblox.com.
  6. Additional Ports and Addresses: Click the Add icon and select the additional port that you want to configure:
    • MGMT (IPv4): Select this to configure IPv4 address for MGMT port. Note that the Infoblox-4030 appliance supports a /32 configuration for IPv4 on MGMT and supports multi-interface only when both LAN1 and MGMT are on the same subnet.
    • MGMT (IPv6): Select this to configure IPv6 address for MGMT port. Note that Infoblox-4030 appliance supports a /128 prefix configuration for IPv6 on MGMT and supports multi-interface only when both LAN1 and MGMT are on the same subnet.
    • LAN2 (IPv4): Select this to configure IPv4 address for the LAN2 port for DHCP or DNS. Note that Infoblox-4030 appliance supports a /32 configuration for IPv4 on LAN2 and supports multi-interface only when both LAN1 and LAN2 are on the same subnet.
    • LAN2 (IPv6): Select this to configure IPv6 address for the LAN2 port for DHCP or DNS. Note that Infoblox-4030 appliance supports a /128 prefix configuration for IPv6 on LAN2 and supports multi-interface only when both LAN1 and LAN2 are on the same subnet.
    • Additional Address (loopback) (IPv4): Select this to add a non-anycast IPv4 address to the loopback interface. Note that you can configure this for IPv4 and dual mode Grid member.
    • Additional Address (loopback) (IPv6): Select this to add a non-anycast IPv6 address to the loopback interface. Note that you can configure this for IPv6 and dual mode Grid member.
    • LAN1 (VLAN) (IPv4): Select this to add a VLAN to the LAN1 interface. You can add up to 10 IPv4 VLAN addresses. Note that you can configure this for IPv4 and dual mode Grid member. This feature is currently supported on the following Infoblox appliances: Trinzic 1405, 1410, 1415, 1420, 1425, 2205, 2210, 2215, 2220, 2225, 4005, Infoblox-4010, Infoblox-4030-Rev1, Infoblox-4030-Rev2, Infoblox-4030-10GE, PT-1400, PT-1405, PT-2200, PT-2205, PT-4000, PT-4000-10GE, CP-VM-800, CP-VM-1400, and CP-VM-2200. It is also supported on all the Trinzic virtual appliances. VLAN tagging is not supported on TE-100, TE-805, ND-805, TR-805, TE-810, TE-815, TE-820, and TE-825. 
    • LAN1 (VLAN) (IPv6): Select this to add a VLAN to the LAN1 interface. You can add up to 10 IPv4 and 10 IPv6 VLAN addresses. Note that you can configure this for IPv6 and dual mode Grid member. This feature is currently supported on the following Infoblox appliances: Trinzic 1405, 1410, 1415, 1420, 1425, 2205, 2210, 2215, 2220, 2225, 4005, Infoblox-4010, Infoblox-4030-Rev1, Infoblox-4030-Rev2, Infoblox-4030-10GE, PT-1400, PT-1405, PT-2200, PT-2205, PT-4000, PT-4000-10GE, CP-VM-800, CP-VM-1400, and CP-VM-2200. It is also supported on all the Trinzic virtual appliances. VLAN tagging is not supported on TE-100, TE-805, ND-805, TR-805, TE-810, TE-815, TE-820, and TE-825.
    • LAN2 (VLAN) (IPv4): Select this to add a VLAN to the LAN2 interface. You can add up to 10 IPv4 VLAN addresses. Note that you can configure this for IPv4 and dual mode Grid member. This feature is currently supported on the following Infoblox appliances: Trinzic 1405, 1410, 1415, 1420, 1425, 2205, 2210, 2215, 2220, 2225, 4005, Infoblox-4010, Infoblox-4030-Rev1, Infoblox-4030-Rev2, Infoblox-4030-10GE, PT-1400, PT-1405, PT-2200, PT-2205, PT-4000, PT-4000-10GE, CP-VM-800, CP-VM-1400, and CP-VM-2200. It is also supported on all the Trinzic virtual appliances. VLAN tagging is not supported on TE-100, TE-805, ND-805, TR-805, TE-810, TE-815, TE-820, and TE-825.
    • LAN2 (VLAN) (IPv6): Select this to add a VLAN to the LAN2 interface. You can add up to 10 IPv6 VLAN addresses. Note that you can configure this for IPv6 and dual mode Grid member. This feature is currently supported on the following Infoblox appliances: Trinzic 1405, 1410, 1415, 1420, 1425, 2205, 2210, 2215, 2220, 2225, 4005, Infoblox-4010, Infoblox-4030-Rev1, Infoblox-4030-Rev2, Infoblox-4030-10GE, PT-1400, PT-1405, PT-2200, PT-2205, PT-4000, PT-4000-10GE, CP-VM-800, CP-VM-1400, and CP-VM-2200. It is also supported on all the Trinzic virtual appliances. VLAN tagging is not supported on TE-100, TE-805, ND-805, TR-805, TE-810, TE-815, TE-820, and TE-825.
      When you select Additional Address (loopback) (IPv4), or Additional Address (loopback) (IPv6) you can only enter the IP address you want to add to the loopback interface. You cannot configure the subnet mask, prefix length, gateway, or port settings.
      Complete the following:
    • Interface: Displays the name of the interface. You cannot modify this.
    • Address: Type the IPv4 or IPv6 address depending on the type of interface. An IPv6 address is a 128-bit number in colon hexadecimal notation. It consists of eight 16-bit groups of hexadecimal digits separated by colons (example: 2001:db8:0000:0123:4567:89ab:0000:cdef or 2001:db8::123:4567:89ab:0:cdef). For Infoblox-4030 appliance, use a /128 CIDR for IPv6 while configuring multiple interfaces.
    • Subnet Mask (IPv4) or Prefix Length (IPv6): Specify an appropriate subnet mask for IPv4 interface or prefix length for IPv6 interface. The prefix length ranges from 2 to 127. Note that the Infoblox-4030 supports the same netmask as the LAN1 interface or a /128 prefix. You cannot configure subnet mask or prefix length for Additional Address (loopback) (IPv4) and Additional Address (loopback) (IPv6).
    • Gateway: Type the IPv4 or IPv6 address of the default gateway depending on the type of interface. For IPv6 interface, you can also type Automatic to enable the appliance to acquire the IPv6 address of the default gateway and the link MTU from router advertisements. You cannot configure gateway for Additional Address (loopback) (IPv4) and Additional Address (loopback) (IPv6).
    • VLAN Tag: For a VLAN, enter the VLAN tag or ID. You can enter a number from 1 to 4094. Ensure that you configure the corresponding switch accordingly.
    • Port Settings: From the drop-down list, choose the connection speed that you want the port to use. You can also choose the duplex setting. Choose Full for concurrent bidirectional data transmission or Half for data transmission in one direction at a time. Select Automatic to instruct the NIOS appliance to negotiate the optimum port connection type (full or half duplex) and speed with the connecting switch automatically. This is the default setting. You cannot configure port settings for vNIOS appliances.
    • DSCP Value: Displays the Grid DSCP value, if configured. To modify, click Override and enter the DSCP value.
      You can enter a value from 0 to 63.
      Note that for a list of supported platforms for each NIOS release, please see the NIOS Release Notes for that release. The NIOS Release Notes are available on the Infoblox Support portal at https://support.infoblox.com.
  7. Save the configuration and click Restart if it appears at the top of the screen.

Guidelines for Configuring Multiple Interfaces

  • You have to configure a LAN1 interface for IPv6 prior to the LAN2 and MGMT IPv6 configuration. This ensures that LAN2 and MGMT reside on the same subnet as LAN1.
  • You can configure the MGMT interface using CLI commands. However, LAN2 can be configured only through Grid Manager.
  • The MGMT and LAN2 IP addresses (IPv4 or IPv6) must be the same as the IP subnet of the LAN1 interface. The appliance verifies the MGMT and LAN2 IP address with the LAN1 netmask or prefix and displays an error message if there is a mismatch.
  • You can use the link-local address as the default gateway only for the LAN1 and LAN2 interfaces.