We help IT Professionals succeed at work.

We've partnered with Certified Experts, Carl Webster and Richard Faulkner, to bring you a podcast all about Citrix Workspace, moving to the cloud, and analytics & intelligence. Episode 2 coming soon!Listen Now

x

Cisco router to check source address for routing

DilbertW01
DilbertW01 asked
on
Medium Priority
744 Views
Last Modified: 2012-08-13

I have 2811 and 2621 routers that I am working with.  I would like to be able to route a particular workstation to a different gateway of last resort to test out a new firewall.  All other systems should go the current firewall which is the existing gateway of last resort.

Here's what the router table should look like (if possible):

Source          Mask                            Destination             Mask                   Next Hop
---------          ---------                        --------------            ---------               ---------------
10.1.1.100     255.255.255.255         0.0.0.0                    0.0.0.0                10.1.1.2
0.0.0.0           0.0.0.0                         0.0.0.0                    0.0.0.0                10.1.1.1.

As you can see, I want 10.1.1.100 to use 10.1.1.2 (new firewall) while all others should continue to use the existing firewall at 10.1.1.1    

I know that the XP workstation can have its local route table modified, but I would prefer to handle this at the router as it is going to expand to many workstations as I migrate them over to the new firewall.

Any suggestions?  Thank you!
Comment
Watch Question

Top Expert 2009
Commented:
This should do it:

access-list 10 permit host 10.1.1.100

route-map internet permit 10
match ip address 10
set ip default next-hop 10.1.1.2

interface fa0/1                   <--connected to 10.1.1.0 LAN
 ip policy route-map internet

When you want to route other workstations to the new Firewall, simply add an entry for the source IP to access-list 10 in this example.

Not the solution you were looking for? Getting a personalized solution is easy.

Ask the Experts

Author

Commented:
Dead-on answer!!!!  Worked great!  Thank you for the fast response and great answer!
Access more of Experts Exchange with a free account
Thanks for using Experts Exchange.

Create a free account to continue.

Limited access with a free account allows you to:

  • View three pieces of content (articles, solutions, posts, and videos)
  • Ask the experts questions (counted toward content limit)
  • Customize your dashboard and profile

*This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

OR

Please enter a first name

Please enter a last name

8+ characters (letters, numbers, and a symbol)

By clicking, you agree to the Terms of Use and Privacy Policy.