We recently had to change our ISP router to use VLANs in order to split our public address space into 2 subnets. Now I need to reconfigure the firewall (watchguard x750e) to use the VLAN (65) instead of the external address. I know the firewall has VLAN capabilities, but I do not know how to configure it. Any help or pointers would be most welcome.
original config (ip #'s changed to protect the innocent):
ISP 1.2.3.4 firewall interface (external) 1.2.3.5 gateway 1.2.3.4
Even if it is going to use VLAN 65 it still needs an address. The older models do not support VLAN tagging. Look at an XTM 25 or maybe an XTM 33. They have similar specs to the 750 and are not prohibitively expensive for most.
dondegner
ASKER
the docs show that the box will support VLAN's on trusted and optional interfaces, but not on the external interface. An intermediary switch was the best solution.
Paul Solovyovsky
Were you able to get the switch solution to work? Just curious.