I'm trying to set up SFOS 17.03 MR3 as a bridge behind another device purely for the purpose of utilizing its web filtering, app control, etc. However, I'm unable to ping from the XG to the default gateway of the upstream device. It doesn't look like the XG instance is seeing the arp-replies back from the upstream box. I do see the arp-replies being sent from the upstream box. I don't believe they're being blocked from the source. I do have the two firewall rules to allow for traffic between the LAN and WAN zones. However, it's non-masqed and the bridge interface doesn't have routing enabled. Any ideas as to why the ARP replies aren't being seen? Would that be why ping wouldn't work?
This thread was automatically locked due to age.