Hi Folks,
I need your help in getting my head around the best practice for defining a stable, resilient route from my home DUAL-WAN setup to a CHR on a VPS, which I want to use as default GW for my VOIP server.
Here is the thing, I depicted in my head so far.
I need help defining the best way to go for the “things in red”, here:

This is my Use-Case:
While working from home-office I deployed a second WAN via 4G/LTE to cover as backup for internet services.
This is a DUAL-WAN setup that works well.
However, for Voice/Phone services, I also deployed a VOIP (asterisk) server with connections to some cloud based VOIP-Providers.
The Problem: Whenever one WAN switches over, the VOIP connection will not (re-)establish itself via the other, remaining WAN link (this is connecting to the remote service, active calls will terminate in the event of a switchover, of course).
My Goal: keeping the connection between VOIP Server and Provider as stable as possible, by taking the problem of switchover of a local WAN out of the equation.
My open questions:
- what service to use in order to connect between RB4011 (via WAN1) and LHGG (via WAN2) to the CHR?
I’d rather not open any ports on my local site on either WAN. The CHR is already secured, only accepting inbound traffic (input chain) from my WAN IPs.
So what will it be (Wireguard, GRE, …) you recommend? - What feature/function to use in order to find and update the currently, active route from local VOIP server to its default gw on the CHR?
Is this something that calls for OSPF on the RB4011 or are there other means of doing that (better).
Some more parameters, some of which you might have seen in the PIC:
- my VOIP providers do not accept IPv6, hence my idea of using the static ipv4 from CHR as gateway.
- WAN1 has a public (dynamic) IPv4 and IPv6, while WAN2 only has one dynamic IPv4 (IPv6 not available)
- The CHR has one fixed IPv4 and a :/64 IPv6 net available for deployment - so one or two IPv6 are possible on its ether1 (WAN) interface
- LHGG and CHR are on ROSv7.1.1, while the RB4011 is still on v6.49.2 (but I am willing to upgrade, should need be - i.e. for using wireguard).
Thank you very much in advance for your input and recommendations!
Stay safe and a good transition into 2022!
regards,
hominidae
