Orbi WiFi 7 RBE973
Reply

Help - two firewalls on same network

HNGO
Aspirant

Help - two firewalls on same network

Hello,

I'm having issues setting this network up, as I think it should be simple.

 

I have two firewalls, SRX5308 and UTM 50 and I want to use the SRX5308 as a VPN only and the UTM50 as a DHCP.

- I'm running to network crashes.

 

Anyone have any suggestions?

Model: SRX5308|PROSAFE Gigabit Quad WAN SSL & IPSEC VPN Firewall, UTM50|ProSecure Web/Email Threat Manager
Message 1 of 6
schumaku
Guru

Re: Help - two firewalls on same network

If implemented as shown (only one DHCP on the router serving the Internet), and just the VPN gateway on Internet 2 - nothing should crash.

 

The only problem remaining is that systems on the LAN need to know about the VPN gateway, and a route for the VPN IP subnet (unknown here) must be added pointing to the VPN gateway LAN IP

Message 2 of 6
HNGO
Aspirant

Re: Help - two firewalls on same network

Thanks,

So i currently have it setup like this:

 

Main Firewall Setting

IP: 192.168.0.1

SM: 255.255.255.0

DG: 192.168.0.1

DHCP Range: 192.168.0.2-240

 

 

VPN Gateway

IP: 192.168.0.10

SM: 255.255.255.0

VPN Clients: 192.168.1.10-20

 

What route should I map out on the Main Firewall?

 

Thanks in advance once again.

 

 

Message 3 of 6
schumaku
Guru

Re: Help - two firewalls on same network

Well, all your LAN clients are using 192.168.0.1 as the default gateway. 

 

If the VLAN IP subnet is not NATed, but becoming available direct, you need to add a route on the default gatway routing 192.168.1.0/24 (for simplicty, I would not subnet any further) pointing to 192.168.0.10.

Message 4 of 6
HNGO
Aspirant

Re: Help - two firewalls on same network

Thanks,

I'll give that a try.

 

Cheers!

Message 5 of 6
HNGO
Aspirant

Re: Help - two firewalls on same network

Good morning,

So i'm having some strange issues:

 

PPTP - Remote users are working great and no issues

*** I didn't configure any routing routes

 

VPN (IPSEC) - I couldn't setup on the Gateway VPN 

- Remote users can connect to the network and get a local IP address but cannot access network resources.

 

Route I added to the default/main firewall:

192.168.0.0 point to 192.168.0.10

 

Any suggestions?

 

Many thanks

Message 6 of 6
Top Contributors
Discussion stats
  • 5 replies
  • 1343 views
  • 1 kudo
  • 2 in conversation
Announcements