This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WebAdmin and ping from another VLAN

First post! I'm a UTM Home newb converting from 15+ years of ISA/TMG. I admit to being a bit lost in the UTM interface, but familiarity will come over time. I think I'm going to like it here.

My first problem: I can't browse WebAdmin from another VLAN, the browser comes back "ERR_CONNECTION_TIMED_OUT". I also can't ping the UTM internal interface from another VLAN.

Please read further because this doesn't feel like a lightweight problem..

The UTM internal interface lives in a server VLAN, and the workstations are in their own VLAN. The UTM external interface is in a DMZ VLAN. The router is a Cisco small-business switch. All involved switchports are configured "tagged-only." There are no ACLs between the VLANs.

Curiously, WebAdmin browses fine within the server VLAN, it's just not working outside of it. More curious, my workstation VLAN can browse other web hosts in the server VLAN, and it can also ping those hosts.

I've only had UTM up and running for a few minutes. I haven't made many changes to the default config. The internal interface is working fine within it's subnet, and the external interface is temporarily disabled. The UTM default IP gateway is on the external interface pointing at my edge router.

I checked the WebAdmin Access Configuration, and "allowed networks" is set to "all."

With regards to the failed pings, I went into Network Protection>Firewall>ICMP, and made a few temporary changes here which unfortunately don't seem to have made any difference...

Allow ICMP on gateway - checked
Allow ICMP through gateway - checked
Gateway is ping visible - checked
Ping from gateway - checked
Gateway is traceroute visible - checked

What might be going on here?

Thank you!



This thread was automatically locked due to age.