Hi there,
we have an issue or problem to understand why our FP makes some trouble with ARP.
Configuration:
1 physical Interface with some Subinterfaces
NAT Rules for some Networks behind Subinterfaces.
All NAT Rules have "no-Proxy-ARP" enabled.
So everything work well for the last months.
Now we have to change one of this Rules to "do Proxy Arp".
--> this gernates Troubles with ARP Requests in a Network wich isn't affectet by this Rule.
NAT Rules looks following:
Direction: Bidirectional
Type: static
Source Interface: Any
Destination Interface: Any
Orginal Soruces: IPv4-Private-All-RFC1918
Orginale Destinations: NW-VPN
Orginale Services: empty
Translated Sources: IPv4-Private-All-RFC1918
Translated Destinations: NW-VPN
Options: DNS:false
--> So why does this Rule effects Proxy Arp in a Network with isn't in the Range of "NW-VPN" ??
With enabled ProxyArp, the FIrewall replies every ARP Request with himself.