Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Re: Creating a New Interface Port - SSG140

$
0
0

Thank you for the quick reply rseibert, I will answer what I can to the best of my ability:

 

Firstly, I typed incorrect, the route is in fact set as

 

0.0.0.0/0     -->     External ISP (attached a screenshot showing it)

 

For the NAT src, I assume that is the Source Translation in the Advanced Policy Settings? Currently it is not checked off for Source Translation, assuming I am looking in the right spot:

 

Policy > Policies > "New Zone" to "Untrust" > Edit Policy > Advanced

(screenshot attached)

Also again, not sure if I am gathering this right when you say "need to specify NAT src in your trust to untrust policy" ... but we do not currently want Interface 0/7 (R&D) to access 0/0 (Trust) - we will do this via policy down the road... for now the only goal is to get Internet access via the new Interface 0/7 through 0/9 (already configured for other Interfaces).

 

I assume that the VLAN setup is already configured properly because the different 192.168.x.x VLAN's can communicate just fine if I setup policies telling what to go where.

 

Again, I apologize if any of this sounds stupid or I am making a mockery of it all... really out of my element and greatly appreciate the help!

 


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>