Solved

Watchguard x750e Configuration Issues

Posted on 2008-10-06
2
635 Views
Last Modified: 2013-11-16
Hi,

We've inhireted a network which uses the IP range 137.121.82.0 /24, we're trying to configure a new x750e using this range as the Trusted network. On the External, we have a /29 subnet of IPs to use.

The current configuration is as follows :

Eth 1 Trusted Interface : 137.121.82.230 /24
Eth 0 External Interface : This is using the PPPOE client and obtaining details via DHCP.

The problem is that traffic is not being routed externally. When configured as follows :

Eth 1 Trusted Interface : 192.168.2.1 /24
Eth 0 External Interface as above, PPPOE with IP via DHCP, traffic is being routed fine.

What could be the issue here?
0
Comment
Question by:SBSNetworks
2 Comments
 
LVL 32

Accepted Solution

by:
dpk_wal earned 500 total points
ID: 22656668
By default the dynamic NAT is only allowed from the private IP ranges, viz.:
10.0.0.0/8; 172.16.0.0/12; 192.168.0.0/16

As you have 137.121.82.0 /24 on trusted; you need to go to Policy Manager; Network->NAT; and add 137.121.82.0 /24 to be allowed as:
In Policy Manager; go to Network->NAT; click Dynamic NAT tab; click Add; add entry as:
From: 137.121.82.0 /24; to Any-External

Move up if you wish [doesn't matter]; save settings to firebox. I would like to point out to you a potential problem with this configuration, if on internet there exists some server(s) which is/are running on same IP subnet 137.121.82.0 /24; then you would not be able to access that server when behind firebox.

Please implement and update.

Thank you.
0
 

Author Closing Comment

by:SBSNetworks
ID: 31503514
Many thanks for this, this was exactly what solved the issue, you've been a great help.
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

If you are like regular user of computer nowadays, a good bet that your home computer is on right now, all exposed to world of Internet to be exploited by somebody you do not know and you never will. Internet security issues has been getting worse d…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
Along with being a a promotional video for my three-day Annielytics Dashboard Seminor, this Micro Tutorial is an intro to Google Analytics API data.
Migrating to Microsoft Office 365 is becoming increasingly popular for organizations both large and small. If you have made the leap to Microsoft’s cloud platform, you know that you will need to create a corporate email signature for your Office 365…

896 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now