- Marcar como nuevo
- Favorito
- Suscribir
- Silenciar
- Suscribirse a un feed RSS
- Resaltar
- Imprimir
- Informe de contenido inapropiado
07-27-2023 12:42 AM - editado 07-31-2023 12:06 AM
Hello to everybody.
Muy customer currently has a default getway connection to an FW, which has a static routes to traffic to his Macrolan and internet routers.
My client wants to disable the FW and direct all traffic to the router's internet connection.
The plan is to set up a default gateway for the virtual IP of the router's internet connection and a vlan level 3 (for internet router) on the system. Those internet routers are directly connectin on the SW
Do you believe it is effective? I'm having trouble managing my connectivity.
I attach the currently FW set up
¡Resuelto! Ir a solución.
- Etiquetas:
-
Swtiches
Soluciones aceptadas
- Marcar como nuevo
- Favorito
- Suscribir
- Silenciar
- Suscribirse a un feed RSS
- Resaltar
- Imprimir
- Informe de contenido inapropiado
07-27-2023 01:33 AM - editado 07-27-2023 01:34 AM
Hi @athan1234
The only thing you need to mind is if the internet router have router to return traffic to the internal vlans. Today probably it is sending all return traffic to firewall, right?
Another thing is NAT. If the firewall is doing NAT today, you need to transfer it to firewall.
And one last thing is the routing between internal vlans. If the firewall is the gateway today, it does the routing. You need to change the gateway to router.
- Marcar como nuevo
- Favorito
- Suscribir
- Silenciar
- Suscribirse a un feed RSS
- Resaltar
- Imprimir
- Informe de contenido inapropiado
07-27-2023 01:33 AM - editado 07-27-2023 01:34 AM
Hi @athan1234
The only thing you need to mind is if the internet router have router to return traffic to the internal vlans. Today probably it is sending all return traffic to firewall, right?
Another thing is NAT. If the firewall is doing NAT today, you need to transfer it to firewall.
And one last thing is the routing between internal vlans. If the firewall is the gateway today, it does the routing. You need to change the gateway to router.
- Marcar como nuevo
- Favorito
- Suscribir
- Silenciar
- Suscribirse a un feed RSS
- Resaltar
- Imprimir
- Informe de contenido inapropiado
el 07-27-2023 01:51 AM
Three points
1- config defualt route toward the Internet router
2- config NATing in Internet router for your vlan
3- config route for vlan in internet router this for return back traffic
