Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Re: Translated Source Address Using Default Gateway Not Alternate Public IP

$
0
0

I actually tried that first but then looked at your example link and thought there was some relationship between the source routing and the source interface based routing so I matched the flow with the link you provided. That didn't work either.

 

Ok, this is what I have setup now and I am getting the same results, packets being sent but no bytes received. Obviously I assume you are saying that I should  add the route to ethernet1(trust-vr) and associate the live public IP to the public subnet on ethernet4 because I can't associate the ethernet to the same interface (https://www.screencast.com/t/PuW56yVG2nB). 

 

Source Routing

Network Source Routing Table List Page

 

trust-vr  
  Source Routing
 IP/NetmaskGatewayInterfaceProtocolPreferenceMetricVsysConfigure
*192.168.0.45/32 ethernet4S201Root 

 

Source Interface Based Routing

Network Interface Routing Table List Page

ethernet1(trust-vr)
 IP/NetmaskGatewayInterfaceProtocolPreferenceMetricConfigure
*212.24.24.45/32 ethernet4S20

 

 

Policy Results

Date/TimeSource Address/PortDestination Address/PortTranslated Source Address/PortTranslated Destination Address/PortServiceDurationBytes SentBytes ReceivedClose Reason
2018-02-06 10:46:57192.168.0.45:570988.8.8.8:53212.24.24.45:40928.8.8.8:53DNS77 sec.2460Close - AGE OUT
2018-02-06 10:46:37192.168.0.45:475248.8.8.8:53212.24.24.45:40918.8.8.8:53DNS77 sec.2520Close - AGE OUT

Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>