PBF not working with DNAT policy for server

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

PBF not working with DNAT policy for server

L0 Member

Dear Team,

 

We have 5 ISPs and we have configured PBF for a group of IPs/networks.

 

We observed while routing the server from X ISP to Y ISP, the server which is published on X ISP becomes inaccessible.

 

Request you please help to resolve the issue on a priority basis.

1 REPLY 1

Cyber Elite
Cyber Elite

For priority assistance I would recommend you reach out to your support organization

 

your description is lacking a lot of detail to efficiently assist you quickly: how is your default routing configured and how are your PBF rules set up?

 

I'm assuming you have server A published for inbound services on ISP-X and want to have it go out of ISP-Y for it's normal web traffic?

You could use a PBF rule for ISP-X with symmetric return enabled so return traffic is sent back to the original interface instead of following your default route

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization
  • 605 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!