- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-28-2022 12:53 PM
Really basic setup here. I'm just trying to get a lab setup going but I'm not able to get out to the Internet. I'm not seeing any hits on my NAT policy and therefore no hits no my security policies. To my knowledge this is setup correctly. I can ping the LAN/WAN interfaces just fine.
PA-820
10.1.0
WAN is ethernet1/1
LAN is ethernet1/2
Is there anything I can use to troubleshoot? I have a box running where I can ping the DS-LAB gateway but cannot ping out to 8.8.8.8. Session count is 0.
04-28-2022 03:02 PM
There are a few things to look at, not exactly sure how you have set everything up. But off the top of my head:
1) In the Translated Packet tab of your NAT policy, under the Source Address Translation, have you set an IP to be translated to? I see the translation type and interface, but not the address in the screen shot.
2) Do you have a Security Policy that allows traffic from DS-LAB to INTERNET?
3) Do you have a default route in your routing table for the destination out to the internet?
04-28-2022 03:02 PM
There are a few things to look at, not exactly sure how you have set everything up. But off the top of my head:
1) In the Translated Packet tab of your NAT policy, under the Source Address Translation, have you set an IP to be translated to? I see the translation type and interface, but not the address in the screen shot.
2) Do you have a Security Policy that allows traffic from DS-LAB to INTERNET?
3) Do you have a default route in your routing table for the destination out to the internet?
04-28-2022 05:52 PM
Thanks! It was the static route. I forgot since the WAN was static I needed to add that manually. I was used to using DHCP which would install the route automatically.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!