Hi all,
I have 2 WAN links, both are from different ISP.
One of them (GW-principal) it's working flawlessly, the sencond one (GW-secundario) was the backup link for the GW-principal.
We decide to change the link state from Backup to Active so we can use it to publish some other stuff.
When I add the PortE2 to the WAN zone and configure the gateway, etc. I can ping the GW-secundario only from the firewall.
Everything seems to be ok but I don't know, maybe I'm missing something... Any advice would be appreciate it.
PortE1 = GW-principal
PortE2= GW-secundario
They're not in the same subnet.
EDIT: This is the 'tcpdump interface PortE2' log I just did.
=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2017.09.12 12:08:25 =~=~=~=~=~=~=~=~=~=~=~= Password: [H[J Sophos Firmware Version SFOS 16.05.5 MR-5 Main Menu 1. Network Configuration 2. System Configuration 3. Route Configuration 4. Device Console 5. Device Management 6. VPN Management 7. Shutdown/Reboot Device 0. Exit Select Menu Number [0-7]: 4 [H[JSophos Firmware Version SFOS 16.05.5 MR-5 console> tcpdump interface PortE2 tcpdump: Starting Packet Dump 12:06:48.207330 PortE2, OUT: IP 201. > 201.: ICMP echo request, id 2, seq 1, length 192 12:06:48.207832 PortE2, IN: IP 201. > 201.: ICMP echo reply, id 2, seq 1, length 192 12:06:48.207872 PortE2, OUT: IP 201. > 201.: ICMP echo request, id 2, seq 2, length 192 12:06:48.208315 PortE2, IN: IP 201. > 201.: ICMP echo reply, id 2, seq 2, length 192 12:06:53.205460 PortE2, IN: ARP, Request who-has 201. tell 201., length 46 12:06:53.205469 PortE2, OUT: ARP, Reply 201. is-at 00:1a:2c:61:2f:c8, length 28 12:07:48.223341 PortE2, OUT: IP 201. > 201.: ICMP echo request, id 2, seq 1, length 192 12:07:48.223827 PortE2, IN: IP 201. > 201.: ICMP echo reply, id 2, seq 1, length 192 12:07:48.223870 PortE2, OUT: IP 201. > 201.: ICMP echo request, id 2, seq 2, length 192 12:07:48.224323 PortE2, IN: IP 201. > 201.: ICMP echo reply, id 2, seq 2, length 192 12:07:53.220613 PortE2, IN: ARP, Request who-has 201. tell 201., length 46 12:07:53.220623 PortE2, OUT: ARP, Reply 201. is-at 00:8a:8b:51:4f:c4, length 28 12 packets captured 12 packets received by filter 0 packets dropped by kernel console>
Thanks.
This thread was automatically locked due to age.