Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations derfloh on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Nokia IP330 Routing

Status
Not open for further replies.

efector

IS-IT--Management
Dec 10, 2003
234
US
I have a Nokia IP330 Running FW-1 4.1 SP5. Currently 2 of the 3 interfaces are being used. The external interface is eth-s3, the private network is eth-s4 and the 3rd interface isnt being used. The firewall is being used to protect my companies corporate network. We also have a development network. I want to know if i can take the 3rd interface, and give it a valid ip address of my development network and attach that port to my development network so that I can route traffic from my corp network to my development network. If so, how? Does it get done in voyager? does it need a rule on the firewall??? Currently the two networks arent connected and for me to administrate the development network, i get on a machine already on that subnet. Basically i just want to be able to route traffic from my corp network to the dev network easily. Is this possible?? The dev network already has its own firewall to the internet, and i only want to route traffic from the corp network destined for the dev network.

Thanks in advance.

Corp Network: 10.10.100.0/24
Dev Network: 10.10.200.0/24

 
Well, You can do so..
Couple of things you need to do route the traffic..

1. Using Voyager configure the interface first
2. Create a network object for this LAN and then add a rule to permit like this and enable log
Source Destination Service
Corp_Net Devp_Net any accept
Devp_Net Corp_Net

This rule will allow tranasction to pass.. Provided if the hosts in the Devp_network has a default Gateway set to the Firewall interface IP.

Else you'll have to define a static route in the Gateway of your Devp network to route the traffic to Corp_Network to the to the Interface IP of the firewall.

There is no requirement to specify static route on the this firewall as this is understood being local..

This config is similar to a DMZ config except for Diverting the Internet traffic and the traffic intended for Corp_Network at the Devp_network Gateway.

Hope it helps
 
how do you enter it in voyager? do you only need to configure the interface??? or do you need to add static routes or proxy arps??? if so, what is the configuration???

Thanks!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top