This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED60 VLAN bridged - blocked because of invalid traffic IP SPOOF

Hello,

we have set this up for a remote location:

So the same VLAN ID on both sides: behind XG and behind RED, same IP Subnet.

Bridge Members, same Zone:

This is already in production and working. the RED60 Users can work on internal ressources and connect to WAN via our central XG.

Now we wanted them to connect from PC2 to PC1 behind XG in the same VLAN. Thougt - no problem - no firewall rules because same subnet - easy task.

But the firewall is blocking traffic because of invalid traffic, IP SPOOF - seen in GUI packet capture. No logs in IPS by the way...!

Why is this not working?

How can we get this working?



This thread was automatically locked due to age.
Parents
  • I read in manual:

    Spoof protection general settings

    Specify the type of spoof prevention and the zones that you want to protect.

    IP spoofing
    If the source IP address of a packet does not match any entry on the firewall’s routing table or if the packet is not from a direct subnet, the firewall drops the packet.

    .

    I would think that a bridge is a direct subnet to the XG but I will test with a dummy FW rule matching this traffic.

Reply
  • I read in manual:

    Spoof protection general settings

    Specify the type of spoof prevention and the zones that you want to protect.

    IP spoofing
    If the source IP address of a packet does not match any entry on the firewall’s routing table or if the packet is not from a direct subnet, the firewall drops the packet.

    .

    I would think that a bridge is a direct subnet to the XG but I will test with a dummy FW rule matching this traffic.

Children