[Webinar] Streamline your web hosting managementRegister Today

  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 695
  • Last Modified:

WG Firebox X700 - need help routing to secondary network

I have a Watchguard Firebox x700.  I have a policy that allows an outside client that just happens to be our hosted web server and it needs to access a PC on the network for SQL. The Firebox also has a VPN tunnel to our other office in South Carolina. It's on a seondary network of  The same outside client (web server) needs to also access a PC on the .3 network.
As a remote user, I can VPN into the Firebox and access all the PCs on the .1 network but can't access the .3 network.  I have to use a seperate VPN connection to the Firebox and leave "use default gateway" checked to access the .3 network.  Of course, all my internet connections aren't available as long as that VPN connection is up.
I have a policy on the firebox that nats the web server directly to the .1 PC for SQL access and this works fine.  I'm having a rough time trying to get to the .3 network. I have several public IPs available to use for the nat just like I do for the .1 network.

How can I create a policy to nat public IP xxx.xxx.xxx.97->
1 Solution
lantervjAuthor Commented:
My only other option is to go directly to the Cisco box in front of the .3 network but I can't seem to get the config right.  That would be the best option anyway.
As you already have .3 network as part of secondary network on trusted interface you can add this subnet as allowed resource.
As oer your description looks to me that .3 subnet is behind a cisco router; so on your cisco router you need to configure access from the remote user virtual IP address and return traffic access as well.

Please let know if there is a different setup.

Thank you.

Featured Post

Evaluating UTMs? Here's what you need to know!

Evaluating a UTM appliance and vendor can prove to be an overwhelming exercise.  How can you make sure that you're getting the security that your organization needs without breaking the bank? Check out our UTM Buyer's Guide for more information on what you should be looking for!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now