Solved

configure static routes on sonicwall

Posted on 2008-10-15
6
690 Views
Last Modified: 2012-05-05
I have a Sonicwall Pro 230 and want to setup static routes.  I setup the sonicwall lan ip as 192.168.2.6, and the wan gateway to 200.X.X.240 and sonicwall wan ip to 200.X.X.241.  I have been given 6 public ip addresses at 66.X.X.220 - 66.X.X.225.  How would i go about setting up a static route using the sonicwall gateway wan ip at 200.X.X.241, or is that possible?  in this example i need to use the first ip at 66.X.X.220.

Thanks
0
Comment
Question by:josog
  • 3
  • 3
6 Comments
 
LVL 13

Expert Comment

by:kdearing
ID: 22724890
The 'normal' setup is:
A router in front of your firewall has 200.x.x.241 on it's outside interface and the inside interface has 66.x.x.225, with the remainder of the IPs to use on the WAN interface of the firewall for NAT, DMZ, etc.

In your case, use the IPs for your DMZ.
0
 

Author Comment

by:josog
ID: 22726949
So i am able to leave the sonicwall lan ip as 192.168.2.6 and internal clients and servers can still use this as the gateway?

I was given 2 interconnect ips for the WAN.  200.x.x.240 for the gateway router that is connected to the sonicwall on the WAN Link and 200.x.x.241 is what i gave for the sonicwall WAN NAT IP.  how do i go about setting up the public ip's 66.X.X.220 - 66.X.X.225 in the dmz.  static route?

I am not sure what you mean on "inside interface" 66.x.x.225

Thanks for all your help.
0
 
LVL 13

Expert Comment

by:kdearing
ID: 22727441
I'm not familiar with your particular model, but most SonicWalls have the capability to assign one of the ports as the DMZ.
Then you can attach devices to that port with public IP addresses.
This is typically used for web, ftp, and front-end email servers.
0
How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

 

Author Comment

by:josog
ID: 22733615
what would be used for the gateway on these public ips?  since its on a different subnt then the /30 addresses i gave the sonicwall wan ip and sonicwall wan gateway under the wan settings.
0
 
LVL 13

Expert Comment

by:kdearing
ID: 22734364
Your SonicWall's DMZ will need one of those IPs.
That IP will be the default gateway for any devices in the DMZ.
0
 

Accepted Solution

by:
josog earned 0 total points
ID: 25491572
We decided to move on to a cisco asa 5510 and decommission the sonicwall.
0

Featured Post

6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

Join & Write a Comment

Suggested Solutions

I have seen some questions on problems with SSH/telnet access to Cisco routers that may occur despite the fact that from a PC connected to your LAN, Internet connectivity is in place and users can access Internet sites without any issues.  There are…
Getting hacked is no longer a matter or "if you get hacked" — the 2016 cyber threat landscape is now titled "when you get hacked." When it happens — will you be proactive, or reactive?
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now