Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Routing to trusted subnet

$
0
0

Dear Community,

I hope you can give a a little help.

We inherited a network with an old SSG 5 (will be replaced in some weeks). This SSG 5 is connected to LAN (via bridge0) and WAN. 

A primary (192.168.45.250) and secondary IP (10.100.30.254) are assigned to the bridge-Interface. The SSG 5 is Standard-Gateway for all Clients in the LAN-Network.

Next to the SSG 5 there is a VLAN-Router in the same network (IP 10.100.30.245) which is used to connect the VLAN 10.100.40.0/24 to the rest of the network.

 

The VLAN-Router also acts as DHCP-Server for clients in the VLAN. Default Route of VLAN-Router points to SSG 5, Standard-Gateway for VLAN-Clients is the VLAN-Router.

In the SSG 5, I added a route back to the VLAN: 10.100.40.0/24 -> 10.100.30.245. The 10.100.40.0/24 network has also been added as trusted zone (same trust zone as 10.100.30/24) in the SSG 5.

 

The problem is, that there is no communication possibile between 10.100.40.0/24 and 10.100.30.0/24. Do I have to add addiotional policies to allow inter-zone routing?

 

Thanks a lot & best regards,

MIchael

 


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>