- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Content translations are temporarily unavailable due to site maintenance. We apologize for any inconvenience. Visit our blog to learn more.
04-20-2013 03:39 PM
Hi,
i have 3 zone trust untrust and dmz
dmz:91.239.204.0/24
trust:10.0.0.0/8
untrust: anything
when i try to nat from untrust to trust 91.239.204.22--->10.1.1.34 packet goes to dmz interface...i think problem is nat before routing or routing before nat because dmz and nated interface same subnet group...
How can i resolve this problem.?
04-21-2013 10:58 PM
So the traffic ingresses the firewall from the DMZ interface ?
Is there a reason why we need to continue using overlapping subnets in the same Virtual Router?
Can you please add the o/p of the following
>show interface logical
>show routing route
-Ameya
04-22-2013 03:01 AM
Hi
i fixed this problem with uturn nat...
regards
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!