Hello Jose I am a little confused about some of the extra/unrelated info, and then confused about the configuration. If this fails @Server-PA> ping source 2xx.1xx.69.44 host 8.8.4.4 PING 8.8.4.4 (8.8.4.4) from 2xx.1xx.69.44 : 56(84) bytes of data. 257 packets transmitted, 0 received, 100% packet loss, time 256151ms then it is security policy, PBF, or routing table related. when you do the pings, do you see the traffic logs (at session end) showing on your FW? What do they show as the reason traffic is not passing. if the logs show traffic is allowed, the security policy is ok, but policy based forwarding and/or routing table is not correct. What happens if yo do a traceroute from the source IP to the 8.8.4.4, and follow the packet to see where/what hops it has. The second issue that is confusing me, is that you say that eth1/1 has a web portal.... which implies (for me) a GP portal configured to use ether1/1. So you are also trying to get traffic to hit a new portal/gateway on eth1/3? Maybe, maybe not... this is why I am confused. I think it is better to provide some screen captures of interfaces, NAT policies, and your portal/gateway IPs, so that myself or whomever is assisting, can better assist you. For me, it is not very clear. thanks
... View more