troubleshooting Question

Dell Layer 3 switch - cant change out Firewall/Gateway

Avatar of ntobin
ntobinFlag for United States of America asked on
Network ManagementDell
6 Comments1 Solution247 ViewsLast Modified:
I am working on removing a Watchguard firewall that is acting as a default gateway & firewall for a network.  It is getting replaced by a Cyberoam firewall.  

I am unable to gain access to the WatchGuard's GUI/CLI as the person who supported this network before me is unwilling to give any of the credentials to the network owner or me.

Here is what I know for certain:

The WatchGuards IP is 10.1.0.254
It acts as the default gateway for all devices on all the VLANS, without it there is no internet connectivity
I believe its mask is /25 (judging by how one of the VLANs is setup)
The layer 3 switches have a default route of 0.0.0.0/0 via 10.1.0.254
The WatchGuard receives the incoming WAN connection via a bridged ISP cable modem
From the WatchGuard the next hop is a Dell Layer 3 switch's Gigabit "Stack" port


Here is the problem:

I configured the cyberoam's WAN interface to work with the public IP range which I have confirmed with the ISP.  I configured the cyberoams LAN interface to be 10.1.0.254 /25.  I removed the WatchGuard and put the Cyberoam in its place.  At this point, the Cyberoam (with its 10.1.0.254 LAN interface) does not show up on the network.  Ping'ing 10.1.0.254 from a workstation yields nothing.  Pinging it from a L2 switch yields nothing.  If I plug my laptop directly into the Cyberoams LAN port and configure my laptop to use it as my gateway I am able to A) ping the cyberoam and B) get out to the internet.  The issue appears to be with the next hop (the Dell L3 switch).  

Putting the WatchGuard back in place and powering it on restores connectivity.  I have triple checked the gateway settings on the workstations, switches and the Cyberoam.  I have manipulated settings on the cyberoam and the Dell L3 switch where possible, but I have been unable to resolve this.  

I am assuming there is a setting/config in the L3 switch that I am not considering that is killing the incoming connection.  Does anyone have any ideas?
ASKER CERTIFIED SOLUTION
ntobin

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 6 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 6 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros