05-18-2023 11:14 AM
I have a simple network setup, 10 PC's including 2 servers. Trying to grant access to an outside 3rd party who can only use RDP to get into the server.
I'd like to limit open access for RDP by narrowing it just by that persons IP address. But when I went to set up Port Forwarding, I received the following error: "The IP address 192.168.6.10 is not on a configured subnet." Trying to figure out where I'm supposed to add a static route, and HOW to do this properly.
05-18-2023 12:13 PM
For this you really should use a VPN and no plain RDP connection.
But it should work nevertheless. The "Allowed Remote IP" is the IP of the external party that you want to allow access to your server and not an internal system. This is the relevant documentation: https://documentation.meraki.com/MX/NAT_and_Port_Forwarding/Port_Forwarding_and_NAT_Rules_on_the_MX
05-18-2023 12:53 PM
I have it set up as you describe - as you can see from the original attached images. Still getting the same error message.
05-18-2023 02:03 PM
In the picture the private IP is in the field for the remote IPs, perhaps you just accidentally swapped them? The LAN IP which you painted out is the IP of the RDP server. The remote IP is the IP that is allowed to access the server.
05-18-2023 06:36 PM
Same error when I swap them.
05-19-2023 12:07 AM
Hello
You need to have a valid L3 lan address to allow the mapping to succeed, then you can add your port-forwarding.
SD-WAN-Routing
*Vlan - add vlan
commit
SD-WAN-Firewall
*port forwarding - add port-forwarding rule
commit
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide