Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Re: mutiple untrust adsl , from trust to untrust only Translated Source Address through first one adsl

$
0
0

Sorry for the confustion, I am asking about your security policy setup.

 

Your MIP security policy should be before your general internet policy on this menu:

 

Policy > Policies 

Trust to Untrust

 

Also enable logging for the rules so we can see what actions are taken for the traffic on which policy.

 

Finally, is your general out bound NAT using policy interface NAT or interface mode on bgroup0 interface.  If you still have interface mode on, this should be turned off and source NAT added to the advanced tab of the general outbound policy.


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>