ISP Configuration in case of TATA (Unmanaged ILL)

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

ISP Configuration in case of TATA (Unmanaged ILL)

L1 Bithead

ISP Configuration in case of TATA (Useful for Indian Customers willing to configure an unmanaged TATA ILL)

 

** This is useful in case you are not provided with a MUX or a ROUTER along with the Internet Link form the ISP**

 

If you are a customer willing to configure an unmanaged TATA ISP where you are provided with a LAN IP POOL and WAN IP POOL from the ISP end then follow the below steps as mentioned:

Considerations:

  1. WAN IP AT THE CUSTOMER END: 1.1.1.1/30
  2. WAN IP AT THE ISP END (This is the ISP Gateway): 1.1.1.2/30
  3. LAN IP POOL GIVEN TO THE CUSTOMER BY THE ISP: 3.3.3.0/29

 

Configure as following:

  1. Configure the WAN interface with 1.1.1/30 as its IP address.
  2. Create two static routes:
  • Route Name: TATA_WAN, Destination: 0.0.0.0/0, Interface: WAN Interface, Next Hop: 1.1.2/32, Metric: 10
  • Route Name: TATA_LAN, Destination: 3.3.1/32 (use any IP from the LAN Pool as the LAN Gateway), Interface: WAN interface, Next Hop: 1.1.1.2/32, Metric: 10.
  1. Create a source NAT for Internet access:
  • Provide a useful name
  • Select source zone as LAN
  • Select Destination zone as WAN
  • Interface as the WAN interface
  • Source Translation, dynamic IP/port, Address type: Translated address: 3.3.2/32
  1. Create a policy rule as required.

Check your Public IP as you should see 3.3.3.2 as your public IP

 

Hope this is helpful.

 

Cheers !!

 

Happy Learning 

3 REPLIES 3

L7 Applicator

Thanks for helping out with these posts.. again, should help people if they are looking for help while configuring.

LIVEcommunity team member
Stay Secure,
Joe
Don't forget to Like items if a post is helpful to you!

L0 Member

Didn't work for me.  Did I miss something? Do I need a return route/NAT policy?

Cyber Elite
Cyber Elite

Just curious what is so different with TATA setup?

Why do they give LAN subnet?

What stops you using any LAN subnet as you perform NAT for outgoing traffic anyway?

Enterprise Architect, Security @ Cloud Carib Ltd
Palo Alto Networks certified from 2011
  • 4416 Views
  • 3 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!