Link to home
Start Free TrialLog in
Avatar of brainsurf1
brainsurf1Flag for United States of America

asked on

How to configure two networks (two locations) connected by wireless bridge

I'm looking for some guidance on the network configuration for connecting two locations, each is on different subnet. These locations were recently connected via Ubiquiti AirFiber 5 wireless bridges. The bridge is up and working perfectly. Prior to this the sites were connected by VPN.

The problem is two different subnets, and all traffic is currently passing thru the firewalls at each site. The only way I could get the two subnets to talk to each other was to put a secondary IP address (of the other subnet) on the firewall (default gateway) at each location. I believe this is a form of multi-homing the networks. When a device at site 1 tries to contact a device at site 2, it goes to the default gateway (firewall), because of it's secondary IP, it says stay here. I don't believe this is the right way to set this up, because all traffic is passing thru the firewalls.  How should this be setup?  (We need to keep the two subnets.)

Site 1
10.0.1.0/23
WatchGuard Firewall & (default gateway): 10.0.1.1 (Secondary IP: 172.16.1.3)
AirFiber: 10.0.1.2

Site 2
172.16.1.0/23
WatchGuard Firewall (default gateway): 172.16.1.1 (Secondary IP: 10.0.1.3)
AirFiber: 172.16.1.2

Thanks.
SOLUTION
Avatar of Qlemo
Qlemo
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Another option, but probably not available, is to set up the bridges to have two addresses. But I don't think the bridges will perform routing. But if, this adds nothing to the load, as traffic has to pass them anyway. Of course you would have to set up routes for the other subnet using the bridges at every device ...
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of brainsurf1

ASKER

Thank you both. You confirmed for me there isn't a much better way to setup this given the current hardware and the traffic will still have to pass thru the firewall.