Solved

Sonicwall route traffic between hosts on X1 and X2 interfaces

Posted on 2014-10-07
5
383 Views
Last Modified: 2014-10-13
Hi Guys

Hopefully someone might be able to point me in the right direction.

I am trying to setup routing between two hosts on my TZ210. OS version 5.8


I've setup the interfaces as:
X1 primary lan. IP: 192.168.0.1  .  X2 secondary lan. IP: 192.168.2.1

On X1 I have a host: 192.168.0.119  .  On X2 I have a host: 192.168.2.233
I created an address object for both and enabled ping capability on both ports (disabled firewall on both hosts locally and enabled ping there).

Next I add the following routes:
ROUTE1: SOURCE(X1-HOST -192.168.0.119) - DESTINATION(X2-HOST -192.168.2.223) - SERVICE(ANY) - GATEWAY(X1 LAN PRIMARY IP) - INTERFACE(X1) - METRIC(1)

ROUTE2: SOURCE(X2-HOST -192.168.2.223) - DESTINATION(X1-HOST -192.168.0.119) - SERVICE(ANY) - GATEWAY(X2 IP) - INTERFACE(X2) - METRIC(1)

But after adding and rebooting device I am unable to ping or communicate between hosts.
Have I missed a route somewhere or am I getting it completely wrong?

Kind Regards

Aaron
0
Comment
Question by:moncomp
  • 4
5 Comments
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 40365608
the current routing setting is restricted to peer to peer communication between the given hosts. commonly it should be for two subnets, not two individual hosts. are you sure it is something you do want?
0
 

Author Comment

by:moncomp
ID: 40365794
hey bbao, so do you mean then I don't need those address object and change the routes to:

ROUTE1: SOURCE(X1-SUBNET) - DESTINATION(X2-SUBNET) - SERVICE(ANY) - GATEWAY(X1 LAN PRIMARY IP) - INTERFACE(X1) - METRIC(1)

ROUTE2: SOURCE(X2-SUBNET) - DESTINATION(X1-SUBNET) - SERVICE(ANY) - GATEWAY(X2 IP) - INTERFACE(X2) - METRIC(1)

Would that work or am I still missing a route?
0
 

Author Comment

by:moncomp
ID: 40365814
here is a screenshot of my route table, I've marked my added routes in red.

sonicroutes.jpg
0
 

Accepted Solution

by:
moncomp earned 0 total points
ID: 40367548
Ok I think I've figured it out. For starters X1 is WAN. X0 is LAN. Sorry for the wrong naming.

But I found with Sonicwall if you set the interface as trusted by default you can communicate between different lan IP's. I tracked the ping issue to the windows firewall! I thought i had disabled but it did not disable correctly!
0
 

Author Closing Comment

by:moncomp
ID: 40376592
solved the issue myself
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
increase internet speed 3 57
Routing question between wifi / firewall and switch 11 65
Pfsense & Black list. 2 80
Cisco ASA 5506 4 39
I found an issue or “bug” in the SonicOS platform (the firmware controlling SonicWALL security appliances) that has to do with renaming Default Service Objects, which then causes a portion of the system to become uncontrollable and unstable. BACK…
Hi All,  Recently I have installed and configured a Sonicwall NS220 in the network as a firewall and Internet access gateway. All was working fine until users started reporting that they cannot use the Cisco VPN client to connect to the customer'…
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
You have products, that come in variants and want to set different prices for them? Watch this micro tutorial that describes how to configure prices for Magento super attributes. Assigning simple products to configurable: We assigned simple products…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now