NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

_Mac's avatar
_Mac
Tutor
Aug 09, 2012

SRX5308: How config multiple static IPno's?

We're upgrading our firewall from Cisco RV042 to Netgears SRX5308, and we need to do setup the LAN4/DMZ port to handle a RANGE of static IP numbers.

xxx.xxx.xxx.10 -> xxx.xxx.xxx.20

We just want the called servers (with static IP no's) to go right through the Firewall, to be handled by the servers firewalls.

1) Can it be done?
Just bought it friday... If not, what should we use instead?

2) If so, HOW?

Thank's a million - do need to say we need answers asap? ;-)

13 Replies

  • Thanks adit! I've got a followup question for you :)
    Btw, I have connected all 4 WAN ports of the SRX5308 to an ISP's gateway (an SMCD3G from Comcast) and attempted production enviroment for six months. The network experience was not great, but your feedback made me think of a possible workaround.
    If the SRX5308 WAN ports cannot connect to the same gateway address, what if:
    *On the gateway I enable dhcp with a range of only 1 assignable ip address
    *On the srx5308 WAN2 settings I set it up with a "static" ip address of the sole assignable ip address on the gateway?
    Obviously this would need to be worked out further, and I still haven't solved the problem of acquiring outbound static wan ip addresses for WAN3 and WAN4 on the srx5308, but it's something, right? Or no...?
    The problem with only being able to assign INBOUND traffic based on static wan IPs, but then not being able to assign static wan IPs to OUTBOUND traffic, is that this creates an asynchronous environment which results in dropped packets!
    For example, if establishing a secure connection to a vendor's website, many problems come from receiving packets on one ip but then replying from another ip. And what about ip whitelisting?
    Thanks in advance for any help.
  • 1 ISP router = 1 WAN. Else you will have problems. Read my Multi-NAT tutorial.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More