Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Sonicwall NSA 240 and MPLS Routing Issue

Posted on 2010-11-22
3
Medium Priority
?
1,206 Views
Last Modified: 2012-05-10
First off, I've inherited a nightmare, and I'm not 100% sure what I want can be done.

I'm in the process of setting up an MPLS across 3 sites.  I've purchased 3 SonicWall NSA 240's to use in each location as firewalls.

Each site has two separate facilities.  
Site 1 - Network 192.168.51.x and 192.168.100.x
Site 2 - Network 192.168.52.x and 192.168.101.x
Site 3 - Network 192.168.50.x

Now to make things complicated.  the 192.168.100 and 101 networks should be able to see the entire network.   The 192.168.5x networks should not be able to see the 10x networks at all.

On the Provider Router there are 2 ports.  00/Internet 01/MPLS
Site 1 MPLS GW's are 51.254 and 100.254
Site 2 MPLS GW's are 52.254 and 101.254
Site 3 MPLS GW are 50.254

So on Site 1 and 2 Routers I assume I need to set 4 ports.
X0 - 5x LAN
X1 - 10x LAN
X2 - MPLS -> 01 on Provider Router
X3 - Internet -> 00 on Provider Router

I'm not sure how to set up Router to make all this work.  
Let me know if you have any ideas.
0
Comment
Question by:C_Parlato
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 33

Accepted Solution

by:
digitap earned 2000 total points
ID: 34190965
what i've done in this scenario is to setup the mpls network on its own ip network.  then, create routes using the gateway of the sonicwall that owns those networks.  once the mpls network is setup on its own zone you can use firewall acls to control the ip networks from accessing the other networks across the mpls network.
0
 
LVL 2

Author Comment

by:C_Parlato
ID: 34192023
That's part of the answer digitap.  The MPLS network can't overlap into site network.  

Also, looks like I need to make a route that points traffic from the x2 port (MPLS Traffic) to the MPLS GW.   Then route all local traffic that needs to go through the MPLS to the x2 port.


0
 
LVL 33

Expert Comment

by:digitap
ID: 34192965
correct...the MPLS could be something like 10.1.2.x/24.  Then, site one would be 10.1.2.1, Site 2 would be 10.1.2.2, etc.  are you saying that your MPLS network would not let all those ports be on the same IP subnet?


by the way, thanks for the points!
0

Featured Post

How to Use the Help Bell

Need to boost the visibility of your question for solutions? Use the Experts Exchange Help Bell to confirm priority levels and contact subject-matter experts for question attention.  Check out this how-to article for more information.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Problem Description:   Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s. We were in need for public IP’s to publish our web resour…
The Cisco RV042 router is a popular small network interfacing device that is often used as an internet gateway. Network administrators need to get at the management interface to make settings, change passwords, etc. This access is generally done usi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

597 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question